CVE-2023-36640: Format String Bug in cli command
A use of externally-controlled format string vulnerability in Fortinet FortiOS 7.4.0, FortiOS 7.2.0 through 7.2.5, FortiOS 7.0 all versions, FortiOS 6.4 all versions, FortiOS 6.2 all versions, FortiOS 6.0.0 through 6.0.16, FortiPAM 1.1.0, FortiPAM 1.0 all versions, FortiProxy 7.2.0 through 7.2.5, FortiProxy 7.0.0 through 7.0.11, FortiProxy 2.0 all versions, FortiProxy 1.2 all versions, FortiProxy 1.1 all versions, FortiProxy 1.0 all versions allows attacker to execute unauthorized code or commands via specially crafted commands
Other sources
Multiple format string bug vulnerabilitues [CWE-134] in FortiOS, FortiProxy, FortiPAM & FortiSwitchManager command line interpreter and httpd may allow an authenticated attacker to achieve arbitrary code execution via specifically crafted commands and http requests.
— FortiGuard
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-36640?
CVE-2023-36640 is classified as a medium-severity vulnerability due to the potential for remote code execution via format string manipulation.
How do I fix CVE-2023-36640?
To mitigate CVE-2023-36640, upgrade Fortinet FortiProxy versions to at least 7.2.6 or FortiOS to at least 7.2.6.
Which Fortinet products are affected by CVE-2023-36640?
CVE-2023-36640 affects multiple versions of Fortinet FortiProxy, FortiOS, and FortiPAM.
What are the impacted versions for FortiProxy related to CVE-2023-36640?
FortiProxy versions 7.2.0 through 7.2.4 and 7.0.0 through 7.0.10 are impacted by CVE-2023-36640.
Is there a patch available for CVE-2023-36640?
Yes, patches for CVE-2023-36640 are available in the form of version upgrades for affected Fortinet products.