Buffer Overflow Vulnerability in FortiOS Could Lead to Unauthorized Code Execution
Summary
A stack-based buffer overflow in Fortinet FortiOS version 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13, 6.4.0 through 6.4.14, 6.2.0 through 6.2.15, 6.0 all versions allows attacker to execute unauthorized code or commands via specially crafted commands
Affected Version(s)
FortiOS <= 7.4.2
FortiOS <= 7.2.6
FortiOS <= 7.0.13
News Articles
FortiOS Vulnerability Let Attackers Execute Unauthorized Commands
Fortinet has disclosed multiple stack-based buffer overflow vulnerabilities (CVE-2024-23110) in FortiOS's command line interpreter.
5 months ago
Fortinet Patches Code Execution Vulnerability in FortiOS
On Tuesday, Fortinet released patches for multiple vulnerabilities in FortiOS and other products, including several that lead to code execution. The most severe, CVE-2024-23110 (CVSS score of 7.4), involves stack-based buffer overflow issues in the command line interpreter, potentially allowing auth...
5 months ago
CVSS V3.1
Timeline
First article discovered by OODA Loop - Intelligence
Vulnerability published.
Vulnerability Reserved.