A stack-based buffer overflow vulnerability [CWE-121] in the command line interpreter of FortiOS before 7.0.4 and FortiProxy before 2.0.8 may allow an authenticated attacker to execute unauthorized code or commands via specially crafted command line arguments.
References
Link | Resource |
---|---|
https://fortiguard.com/psirt/FG-IR-21-179 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
25 Jul 2022, 17:05
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-787 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.7 |
CPE | cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:* |
|
References | (CONFIRM) https://fortiguard.com/psirt/FG-IR-21-179 - Vendor Advisory |
18 Jul 2022, 17:51
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-07-18 17:15
Updated : 2024-02-04 22:51
NVD link : CVE-2021-44170
Mitre link : CVE-2021-44170
CVE.ORG link : CVE-2021-44170
JSON object : View
Products Affected
fortinet
- fortios
- fortiproxy
CWE
CWE-787
Out-of-bounds Write