Description
A stack-based buffer overflow [CWE-121] vulnerability in Fortinet FortiOS version 7.2.1 through 7.2.6 and version 7.4.0 through 7.4.1 allows a privileged attacker over the administrative interface to execute arbitrary code or commands via crafted HTTP or HTTPs requests.
No analysis available yet.
Remediation
Vendor Solution
Please upgrade to FortiOS version 7.4.2 or above Please upgrade to FortiOS version 7.2.8 or above Please upgrade to FortiAuthenticator version 6.6.1 or above Please upgrade to FortiAuthenticator version 6.5.5 or above
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-50898 | A stack-based buffer overflow [CWE-121] vulnerability in Fortinet FortiOS version 7.2.1 through 7.2.6 and version 7.4.0 through 7.4.1 allows a privileged attacker over the administrative interface to execute arbitrary code or commands via crafted HTTP or HTTPs requests. |
References
| Link | Providers |
|---|---|
| https://fortiguard.com/psirt/FG-IR-23-415 |
|
History
No history.
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2024-08-02T20:53:20.924Z
Reserved: 2023-10-25T08:43:15.289Z
Link: CVE-2023-46714
Updated: 2024-08-02T20:53:20.924Z
Status : Modified
Published: 2024-05-14T17:15:25.840
Modified: 2024-11-21T08:29:08.413
Link: CVE-2023-46714
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD