Double Free Vulnerability in Fortinet FortiOS and FortiPAM
CVE-2023-41678
8.3HIGH
What is CVE-2023-41678?
A double free vulnerability exists in Fortinet FortiOS and FortiPAM that could allow an attacker to execute unauthorized code or commands. The flaw affects specific versions of FortiOS (7.0.0 to 7.0.5) and FortiPAM (1.0.0 to 1.0.3, 1.1.0 to 1.1.1). An attacker can exploit this by sending a specially crafted request, leading to potential unauthorized actions within the affected systems.
Affected Version(s)
FortiOS 7.0.0 <= 7.0.5
FortiPAM 1.1.0 <= 1.1.1
FortiPAM 1.0.0 <= 1.0.3