Multiple stack-based buffer overflow vulnerabilities [CWE-121] in the proxy daemon of FortiWeb 5.x all versions, 6.0.7 and below, 6.1.2 and below, 6.2.6 and below, 6.3.16 and below, 6.4 all versions may allow an unauthenticated remote attacker to achieve arbitrary code execution via specifically crafted HTTP requests.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://fortiguard.com/psirt/FG-IR-21-186 |
History
Wed, 23 Oct 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: fortinet
Published: 2023-02-16T18:05:39.442Z
Updated: 2024-10-23T14:49:52.406Z
Reserved: 2021-10-20T17:44:45.604Z
Link: CVE-2021-42756
Vulnrichment
Updated: 2024-08-04T03:38:50.132Z
NVD
Status : Modified
Published: 2023-02-16T19:15:11.500
Modified: 2024-11-21T06:28:06.483
Link: CVE-2021-42756
Redhat
No data.