A null pointer dereference in Fortinet FortiOS before 7.2.5, before 7.0.11 and before 6.4.13, FortiProxy before 7.2.4 and before 7.0.10 allows attacker to denial of sslvpn service via specifically crafted request in bookmark parameter.
2023-06-16T10:15:09.467
2024-11-21T08:05:22.837
Modified
CVSSv3.1: 6.5 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | fortinet | fortiproxy | < 7.0.10 | Yes |
Application | fortinet | fortiproxy | < 7.2.4 | Yes |
Operating System | fortinet | fortios | < 6.4.13 | Yes |
Operating System | fortinet | fortios | < 7.0.11 | Yes |
Operating System | fortinet | fortios | < 7.2.5 | Yes |