A use of externally-controlled format string in Fortinet FortiOS version 7.2.0 through 7.2.4, FortiOS all versions 7.0, FortiOS all versions 6.4, FortiOS all versions 6.2, FortiProxy version 7.2.0 through 7.2.1, FortiProxy version 7.0.0 through 7.0.7 allows attacker to execute unauthorized code or commands via specially crafted commands.
2023-06-13T09:15:16.077
2024-11-21T07:27:24.387
Modified
CVSSv3.1: 6.7 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | fortinet | fortiproxy | ≤ 7.0.7 | Yes |
Application | fortinet | fortiproxy | 7.2.0 | Yes |
Application | fortinet | fortiproxy | 7.2.1 | Yes |
Operating System | fortinet | fortios | ≤ 6.2.15 | Yes |
Operating System | fortinet | fortios | ≤ 6.4.12 | Yes |
Operating System | fortinet | fortios | ≤ 7.0.11 | Yes |
Operating System | fortinet | fortios | ≤ 7.2.4 | Yes |