A heap-based buffer overflow in Fortinet FortiWeb version 7.0.0 through 7.0.1, FortiWeb version 6.3.0 through 6.3.19, FortiWeb 6.4 all versions, FortiWeb 6.2 all versions, FortiWeb 6.1 all versions allows attacker to escalation of privilege via specifically crafted arguments to existing commands.
2023-02-16T19:15:14.383
2024-11-21T07:46:49.293
Modified
CVSSv3.1: 7.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | fortinet | fortiweb | ≤ 6.2.7 | Yes |
Application | fortinet | fortiweb | < 6.3.20 | Yes |
Application | fortinet | fortiweb | ≤ 6.4.2 | Yes |
Application | fortinet | fortiweb | < 7.0.2 | Yes |