CVE-2024-21758: Buffer Overflow
A stack-based buffer overflow in Fortinet FortiWeb versions 7.2.0 through 7.2.7, and 7.4.0 through 7.4.1 may allow a privileged user to execute arbitrary code via specially crafted CLI commands, provided the user is able to evade FortiWeb stack protections.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-21758?
CVE-2024-21758 is considered a critical vulnerability due to its potential to allow arbitrary code execution.
How do I fix CVE-2024-21758?
To mitigate CVE-2024-21758, upgrade Fortinet FortiWeb to version 7.2.8 or 7.4.2 or later.
Who is affected by CVE-2024-21758?
CVE-2024-21758 affects users of Fortinet FortiWeb versions 7.2.0 through 7.2.7 and 7.4.0 through 7.4.1.
What impact does CVE-2024-21758 have?
CVE-2024-21758 could allow a privileged user to execute arbitrary code on the affected system.
What are the characteristics of CVE-2024-21758?
CVE-2024-21758 is characterized by a stack-based buffer overflow that can be triggered using specially crafted CLI commands.