An allocation of resources without limits or throttling vulnerability [CWE-770] in FortiOS versions 7.4.0 through 7.4.4, versions 7.2.0 through 7.2.8, versions 7.0.0 through 7.0.15, and versions 6.4.0 through 6.4.15 may allow an unauthenticated remote user to consume all system memory via multiple large file uploads.
2025-01-14T14:15:31.950
2025-01-31T16:10:13.370
Analyzed
CVSSv3.1: 7.5 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | fortinet | fortios | < 6.4.16 | Yes |
Operating System | fortinet | fortios | < 7.0.16 | Yes |
Operating System | fortinet | fortios | < 7.2.9 | Yes |
Operating System | fortinet | fortios | < 7.4.5 | Yes |