CVE-2023-25611: Fortinet Fortianalyzer
High severity, CVSS 7.3. EPSS: 0.3% chance of exploitation in the next 30 days.
A improper neutralization of formula elements in a CSV file vulnerability in Fortinet FortiAnalyzer 6.4.0 - 6.4.9, 7.0.0 - 7.0.5, and 7.2.0 - 7.2.1 allows local attacker to execute unauthorized code or commands via inserting spreadsheet formulas in macro names.
Affected products
- Fortinet Fortianalyzer: from 6.4.0, before 7.0.6 (fixed in 7.0.6); from 7.2.0, before 7.2.2 (fixed in 7.2.2)
Published 2023-03-07. Last modified 2026-06-17.