Loading HuntDB...

Fortinet FortiOS Heap-Based Buffer Overflow Vulnerability

Added Dec. 13, 2022 Due Jan. 3, 2023 CVE-2022-42475
Overdue Fortinet / FortiOS CWE-197

Description

Multiple versions of Fortinet FortiOS SSL-VPN contain a heap-based buffer overflow vulnerability which can allow an unauthenticated, remote attacker to execute arbitrary code or commands via specifically crafted requests.

Required Action

Apply updates per vendor instructions.

References

Additional Information

Catalog Version
2025.01.24
Catalog Released
Jan. 24, 2025
Days Until Due
0 days
Last Updated
4 months, 3 weeks ago