Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-46670


AnĀ Out-of-bounds Read vulnerability [CWE-125] in FortiOS version 7.6.0, version 7.4.4 and below, version 7.2.9 and below and FortiSASE FortiOS tenant version 24.3.b IPsec IKE service may allow an unauthenticated remote attacker to trigger memory consumption leading to Denial of Service via crafted requests.


Published

2025-01-14T14:15:32.243

Last Modified

2025-01-31T16:12:16.597

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Primary
    CWE-125

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System fortinet fortios < 7.2.10 Yes
Operating System fortinet fortios < 7.4.5 Yes
Operating System fortinet fortios 7.6.0 Yes

References