Home
MEDIUM: 6.7 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:CDefault status
unaffected
7.2.0 (semver)
affected
7.0.0 (semver)
affected
Default status
unaffected
7.4.0
affected
7.2.0 (semver)
affected
7.0.1 (semver)
affected
6.4.7 (semver)
affected
Description
Multiple issues including the use of uninitialized ressources [CWE-908] and excessive iteration [CWE-834] vulnerabilities vulnerability in Fortinet allows a VPN user to corrupt memory potentially leading to code or commands execution via specifically crafted requests.
Problem types
Execute unauthorized code or commands
Product status
7.2.0 (semver)
7.0.0 (semver)
7.4.0
7.2.0 (semver)
7.0.1 (semver)
6.4.7 (semver)
References
fortiguard.com/psirt/FG-IR-23-165