<?xml version="1.0" encoding="UTF-8"?>
<cvrf:cvrfdoc xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema" xmlns:cvrf-common="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/common" xmlns:cvrf="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/cvrf">
    <cvrf:DocumentTitle>SQL Injection in delete filter component</cvrf:DocumentTitle>
    <cvrf:DocumentType>Fortinet PSIRT Advisories</cvrf:DocumentType>
    <cvrf:DocumentPublisher Type="Vendor">
        <cvrf:ContactDetails>
            Fortinet PSIRT Contact:
            Website: https://fortiguard.fortinet.com/faq/psirt-contact
        </cvrf:ContactDetails>
     </cvrf:DocumentPublisher>
    <cvrf:DocumentTracking>
        <cvrf:Identification>
            <cvrf:ID>FG-IR-22-140</cvrf:ID>
        </cvrf:Identification>
        <cvrf:Status>Final</cvrf:Status>
        <cvrf:Version>1</cvrf:Version>
        <cvrf:RevisionHistory>
            <cvrf:Revision>
                <cvrf:Number>1</cvrf:Number>
                <cvrf:Date>2022-09-06T00:00:00</cvrf:Date>
                <cvrf:Description>Current version</cvrf:Description>
        </cvrf:Revision>
       </cvrf:RevisionHistory>
        <cvrf:InitialReleaseDate>2022-09-06T00:00:00</cvrf:InitialReleaseDate>
        <cvrf:CurrentReleaseDate>2022-09-06T00:00:00</cvrf:CurrentReleaseDate>
    </cvrf:DocumentTracking>
    <cvrf:DocumentNotes>
        <cvrf:Note Title="Summary" Type="Summary" Ordinal="1">
            An improper neutralization of special elements used in an SQL command (&#39;SQL Injection&#39;) vulnerability [CWE-89] in FortiWeb delete log filter component may allow a privileged attacker to execute SQL commands over the log database via specifically crafted strings parameters.
        </cvrf:Note>
        <cvrf:Note Title="Description" Type="General" Ordinal="2">
            None
        </cvrf:Note>
        <cvrf:Note Title="Impact" Type="General" Ordinal="3">
            Execute unauthorized code or commands
        </cvrf:Note>
        <cvrf:Note Title="Affected Products" Type="General" Ordinal="4">
            At leastFortiWeb version 7.0.0 through 7.0.1FortiWeb 6.4 all versionsFortiWeb 6.3 all versionsFortiWeb version 6.2.3 through 6.2.8FortiWeb 6.1 all versions are not affectedFortiWeb 6.0 all versions are not affectedFortiWeb 5.9 all versions are not affected
        </cvrf:Note>
        <cvrf:Note Title="Solutions" Type="General" Ordinal="5">
            Upgrade to FortiWeb version 7.0.2 or above.
        </cvrf:Note>
    </cvrf:DocumentNotes>
    <cvrf:Acknowledgments>
        <cvrf:Acknowledgment>
            <cvrf:Description>Internally discovered and reported by Giulia Clerici of the Fortinet Product Security team.</cvrf:Description>
        </cvrf:Acknowledgment>
    </cvrf:Acknowledgments>
    <ProductTree>
        <Branch Name="Fortinet" Type="Vendor">
            <Branch Name="FortiWeb" Type="Product Name">
                <Branch Name="7.0.1" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-7.0.1">FortiWeb 7.0.1</FullProductName>
                </Branch>
                <Branch Name="7.0.0" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-7.0.0">FortiWeb 7.0.0</FullProductName>
                </Branch>
                <Branch Name="6.4.3" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.4.3">FortiWeb 6.4.3</FullProductName>
                </Branch>
                <Branch Name="6.4.2" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.4.2">FortiWeb 6.4.2</FullProductName>
                </Branch>
                <Branch Name="6.4.1" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.4.1">FortiWeb 6.4.1</FullProductName>
                </Branch>
                <Branch Name="6.4.0" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.4.0">FortiWeb 6.4.0</FullProductName>
                </Branch>
                <Branch Name="6.3.23" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.23">FortiWeb 6.3.23</FullProductName>
                </Branch>
                <Branch Name="6.3.22" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.22">FortiWeb 6.3.22</FullProductName>
                </Branch>
                <Branch Name="6.3.21" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.21">FortiWeb 6.3.21</FullProductName>
                </Branch>
                <Branch Name="6.3.20" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.20">FortiWeb 6.3.20</FullProductName>
                </Branch>
                <Branch Name="6.3.19" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.19">FortiWeb 6.3.19</FullProductName>
                </Branch>
                <Branch Name="6.3.18" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.18">FortiWeb 6.3.18</FullProductName>
                </Branch>
                <Branch Name="6.3.17" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.17">FortiWeb 6.3.17</FullProductName>
                </Branch>
                <Branch Name="6.3.16" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.16">FortiWeb 6.3.16</FullProductName>
                </Branch>
                <Branch Name="6.3.15" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.15">FortiWeb 6.3.15</FullProductName>
                </Branch>
                <Branch Name="6.3.14" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.14">FortiWeb 6.3.14</FullProductName>
                </Branch>
                <Branch Name="6.3.13" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.13">FortiWeb 6.3.13</FullProductName>
                </Branch>
                <Branch Name="6.3.12" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.12">FortiWeb 6.3.12</FullProductName>
                </Branch>
                <Branch Name="6.3.11" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.11">FortiWeb 6.3.11</FullProductName>
                </Branch>
                <Branch Name="6.3.10" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.10">FortiWeb 6.3.10</FullProductName>
                </Branch>
                <Branch Name="6.3.9" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.9">FortiWeb 6.3.9</FullProductName>
                </Branch>
                <Branch Name="6.3.8" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.8">FortiWeb 6.3.8</FullProductName>
                </Branch>
                <Branch Name="6.3.7" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.7">FortiWeb 6.3.7</FullProductName>
                </Branch>
                <Branch Name="6.3.6" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.6">FortiWeb 6.3.6</FullProductName>
                </Branch>
                <Branch Name="6.3.5" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.5">FortiWeb 6.3.5</FullProductName>
                </Branch>
                <Branch Name="6.3.4" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.4">FortiWeb 6.3.4</FullProductName>
                </Branch>
                <Branch Name="6.3.3" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.3">FortiWeb 6.3.3</FullProductName>
                </Branch>
                <Branch Name="6.3.2" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.2">FortiWeb 6.3.2</FullProductName>
                </Branch>
                <Branch Name="6.3.1" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.1">FortiWeb 6.3.1</FullProductName>
                </Branch>
                <Branch Name="6.3.0" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.3.0">FortiWeb 6.3.0</FullProductName>
                </Branch>
                <Branch Name="6.2.8" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.2.8">FortiWeb 6.2.8</FullProductName>
                </Branch>
                <Branch Name="6.2.7" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.2.7">FortiWeb 6.2.7</FullProductName>
                </Branch>
                <Branch Name="6.2.6" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.2.6">FortiWeb 6.2.6</FullProductName>
                </Branch>
                <Branch Name="6.2.5" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.2.5">FortiWeb 6.2.5</FullProductName>
                </Branch>
                <Branch Name="6.2.4" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.2.4">FortiWeb 6.2.4</FullProductName>
                </Branch>
                <Branch Name="6.2.3" Type="Product Version">
                    <FullProductName ProductID="FortiWeb-6.2.3">FortiWeb 6.2.3</FullProductName>
                </Branch>
            </Branch>
        </Branch>
    </ProductTree>
    <Vulnerability Ordinal="1">
        <Title>SQL Injection in delete filter component</Title>
        <cvrf:CVE>CVE-2022-29059</cvrf:CVE>
        <ProductStatuses>
            <Status Type="Known Affected">
                <ProductID>FortiWeb-7.0.1</ProductID>
                <ProductID>FortiWeb-7.0.0</ProductID>
                <ProductID>FortiWeb-6.4.3</ProductID>
                <ProductID>FortiWeb-6.4.2</ProductID>
                <ProductID>FortiWeb-6.4.1</ProductID>
                <ProductID>FortiWeb-6.4.0</ProductID>
                <ProductID>FortiWeb-6.3.23</ProductID>
                <ProductID>FortiWeb-6.3.22</ProductID>
                <ProductID>FortiWeb-6.3.21</ProductID>
                <ProductID>FortiWeb-6.3.20</ProductID>
                <ProductID>FortiWeb-6.3.19</ProductID>
                <ProductID>FortiWeb-6.3.18</ProductID>
                <ProductID>FortiWeb-6.3.17</ProductID>
                <ProductID>FortiWeb-6.3.16</ProductID>
                <ProductID>FortiWeb-6.3.15</ProductID>
                <ProductID>FortiWeb-6.3.14</ProductID>
                <ProductID>FortiWeb-6.3.13</ProductID>
                <ProductID>FortiWeb-6.3.12</ProductID>
                <ProductID>FortiWeb-6.3.11</ProductID>
                <ProductID>FortiWeb-6.3.10</ProductID>
                <ProductID>FortiWeb-6.3.9</ProductID>
                <ProductID>FortiWeb-6.3.8</ProductID>
                <ProductID>FortiWeb-6.3.7</ProductID>
                <ProductID>FortiWeb-6.3.6</ProductID>
                <ProductID>FortiWeb-6.3.5</ProductID>
                <ProductID>FortiWeb-6.3.4</ProductID>
                <ProductID>FortiWeb-6.3.3</ProductID>
                <ProductID>FortiWeb-6.3.2</ProductID>
                <ProductID>FortiWeb-6.3.1</ProductID>
                <ProductID>FortiWeb-6.3.0</ProductID>
                <ProductID>FortiWeb-6.2.8</ProductID>
                <ProductID>FortiWeb-6.2.7</ProductID>
                <ProductID>FortiWeb-6.2.6</ProductID>
                <ProductID>FortiWeb-6.2.5</ProductID>
                <ProductID>FortiWeb-6.2.4</ProductID>
                <ProductID>FortiWeb-6.2.3</ProductID>
            </Status>
        </ProductStatuses>
        <CVSSScoreSets>
            <ScoreSetV3>
                <BaseScoreV3>2.6</BaseScoreV3>
                <VectorV3>CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N/E:P/RL:U/RC:C</VectorV3>
            </ScoreSetV3>
        </CVSSScoreSets>
        <References Type="Self">
            <Reference>
                <URL>https://fortiguard.fortinet.com/psirt/FG-IR-22-140</URL>
                <Description>SQL Injection in delete filter component</Description>
            </Reference>Reference>
        </References>
    </Vulnerability>
</cvrf:cvrfdoc>