A buffer overflow vulnerability in Fortinet FortiOS 6.0.0 through 6.0.4, 5.6.0 through 5.6.7, 5.4 and earlier versions and FortiProxy 2.0.0, 1.2.8 and earlier versions under SSL VPN web portal allows a non-authenticated attacker to perform a Denial-of-service attack via special craft message payloads.
2019-06-04T21:29:00.313
2024-11-21T03:46:59.530
Modified
CVSSv3.1: 5.3 (MEDIUM)
AV:N/AC:L/Au:N/C:N/I:N/A:P
10.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | fortinet | fortiproxy | ≤ 1.2.8 | Yes |
Application | fortinet | fortiproxy | 2.0.0 | Yes |
Operating System | fortinet | fortios | ≤ 5.2.14 | Yes |
Operating System | fortinet | fortios | ≤ 5.4.12 | Yes |
Operating System | fortinet | fortios | ≤ 5.6.10 | Yes |
Operating System | fortinet | fortios | ≤ 6.0.4 | Yes |