A out-of-bounds write in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13, 6.4.0 through 6.4.14, 6.2.0 through 6.2.15, 6.0.0 through 6.0.17, FortiProxy versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.8, 7.0.0 through 7.0.14, 2.0.0 through 2.0.13, 1.2.0 through 1.2.13, 1.1.0 through 1.1.6, 1.0.0 through 1.0.7 allows attacker to execute unauthorized code or commands via specifically crafted requests
References
| Link | Resource |
|---|---|
| https://fortiguard.com/psirt/FG-IR-24-015 | Vendor Advisory |
| https://fortiguard.com/psirt/FG-IR-24-015 | Vendor Advisory |
| https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2024-21762 | US Government Resource |
Configurations
Configuration 1 (hide)
|
History
24 Oct 2025, 12:54
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2024-21762 - US Government Resource |
21 Oct 2025, 23:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
21 Oct 2025, 20:19
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
21 Oct 2025, 19:20
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
21 Nov 2024, 08:54
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://fortiguard.com/psirt/FG-IR-24-015 - Vendor Advisory |
13 Feb 2024, 18:21
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:* |
|
| References | () https://fortiguard.com/psirt/FG-IR-24-015 - Vendor Advisory | |
| First Time |
Fortinet
Fortinet fortios Fortinet fortiproxy |
09 Feb 2024, 14:31
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
09 Feb 2024, 09:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-02-09 09:15
Updated : 2025-10-24 12:54
NVD link : CVE-2024-21762
Mitre link : CVE-2024-21762
CVE.ORG link : CVE-2024-21762
JSON object : View
Products Affected
fortinet
- fortios
- fortiproxy
CWE
CWE-787
Out-of-bounds Write
