CVE-2024-46663: Stack buffer overflow in CLI command
A stack-buffer overflow vulnerability [CWE-121] in FortiMail CLI may allow a privileged attacker to execute arbitrary code or commands via specifically crafted CLI commands.
Other sources
A stack-buffer overflow vulnerability [CWE-121] in Fortinet FortiMail CLI version 7.6.0 through 7.6.1 and before 7.4.3 allows a privileged attacker to execute arbitrary code or commands via specifically crafted CLI commands.
— NVD
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-46663?
CVE-2024-46663 has a high severity rating due to its potential to allow arbitrary code execution by a privileged attacker.
How do I fix CVE-2024-46663?
To mitigate CVE-2024-46663, upgrade Fortinet FortiMail CLI to version 7.6.2 or later, or ensure you are not using versions 7.6.0 to 7.6.1 or before 7.4.3.
What systems are affected by CVE-2024-46663?
CVE-2024-46663 affects Fortinet FortiMail CLI version 7.6.0 to 7.6.1 and versions prior to 7.4.3.
What is a stack-buffer overflow vulnerability in the context of CVE-2024-46663?
A stack-buffer overflow vulnerability like CVE-2024-46663 allows attackers to exploit memory allocation errors to execute arbitrary code.
Who can exploit CVE-2024-46663?
CVE-2024-46663 can be exploited by a privileged attacker capable of executing specially crafted CLI commands.