A stack-based buffer overflow [CWE-121] vulnerability in Fortinet FortiOS version 7.2.1 through 7.2.6 and version 7.4.0 through 7.4.1 allows a privileged attacker over the administrative interface to execute arbitrary code or commands via crafted HTTP or HTTPs requests.
2024-05-14T17:15:25.840
2024-11-21T08:29:08.413
Modified
CVSSv3.1: 7.2 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | fortinet | fortios | ≤ 7.2.6 | Yes |
Operating System | fortinet | fortios | 7.4.0 | Yes |
Operating System | fortinet | fortios | 7.4.1 | Yes |