A out-of-bounds write in Fortinet FortiOS 7.4.0 through 7.4.1, 7.2.0 through 7.2.5, 7.0.0 through 7.0.12, 6.4.0 through 6.4.14, 6.2.0 through 6.2.15, FortiProxy 7.4.0, 7.2.0 through 7.2.6, 7.0.0 through 7.0.12, 2.0.0 through 2.0.13 allows attacker to execute unauthorized code or commands via specially crafted HTTP requests.
References
Link | Resource |
---|---|
https://fortiguard.com/psirt/FG-IR-23-328 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
15 Mar 2024, 15:22
Type | Values Removed | Values Added |
---|---|---|
First Time |
Fortinet
Fortinet fortios Fortinet fortiproxy |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
References | () https://fortiguard.com/psirt/FG-IR-23-328 - Vendor Advisory | |
CPE | cpe:2.3:a:fortinet:fortiproxy:7.4.0:*:*:*:*:*:*:* cpe:2.3:o:fortinet:fortios:7.4.1:*:*:*:*:*:*:* cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:* cpe:2.3:o:fortinet:fortios:7.4.0:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:* |
12 Mar 2024, 15:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-03-12 15:15
Updated : 2024-03-15 15:22
NVD link : CVE-2023-42789
Mitre link : CVE-2023-42789
JSON object : View
Products Affected
fortinet
- fortiproxy
- fortios
CWE
CWE-787
Out-of-bounds Write