CVE-2023-23780: Buffer Overflow
A stack-based buffer overflow in Fortinet FortiWeb version 7.0.0 through 7.0.1, Fortinet FortiWeb version 6.3.6 through 6.3.19, Fortinet FortiWeb 6.4 all versions allows attacker to escalation of privilege via specifically crafted HTTP requests.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2023-23780.
What is the severity of CVE-2023-23780?
The severity of CVE-2023-23780 is high, with a CVSS score of 8.8.
Which software versions are affected by CVE-2023-23780?
Fortinet FortiWeb versions 6.3.0 through 6.3.19, 6.4.0 through 6.4.2, and 7.0.0 through 7.0.1 are affected by CVE-2023-23780.
How does an attacker exploit CVE-2023-23780?
An attacker can exploit CVE-2023-23780 by sending specifically crafted HTTP requests to the vulnerable Fortinet FortiWeb system.
Is there a fix for CVE-2023-23780?
Yes, Fortinet has released patches to address CVE-2023-23780. Please refer to the official Fortinet website or contact their support for the latest updates and patches.