CVE-2024-47572: Fortinet Fortisoar

High severity, CVSS 8.0. EPSS: 0.6% chance of exploitation in the next 30 days.

An improper neutralization of formula elements in a csv file in Fortinet FortiSOAR 7.2.1 through 7.4.1 allows attacker to execute unauthorized code or commands via manipulating csv file

Affected products

  • Fortinet Fortisoar: from 7.2.1, up to and including 7.2.2; from 7.3.0, before 7.3.3 (fixed in 7.3.3); from 7.4.0, before 7.4.2 (fixed in 7.4.2)

Published 2025-01-14. Last modified 2026-06-17.