FG-IR-22-494: Out-of-bound write in CLI
Published Jun 12, 2023
·Updated
An out-of-bounds write vulnerability [CWE-787] in Command Line Interface of FortiOS and FortiProxy may allow an authenticated attacker to achieve arbitrary code execution via specifically crafted commands.
Affected Software
2 affected components
Fortinet FortiOS
Fortinet FortiProxy
Event History
Jun 12, 2023
Advisory Published
via FortiGuard·12:00 AM
Data Sourced
via FortiGuard·12:00 AM
DescriptionSeverityWeaknessAffected Software
Oct 25, 2024
Advisory Published
via FortiGuard·12:00 AM
Frequently Asked Questions
1
What is the severity of FG-IR-22-494?
The vulnerability FG-IR-22-494 is classified as high severity due to its potential to allow arbitrary code execution.
2
How do I fix FG-IR-22-494?
To mitigate FG-IR-22-494, apply the latest security patches and updates provided by Fortinet for FortiOS and FortiProxy.
3
What types of systems are affected by FG-IR-22-494?
FG-IR-22-494 affects systems running Fortinet FortiOS and FortiProxy.
4
What type of vulnerability is FG-IR-22-494?
FG-IR-22-494 is an out-of-bounds write vulnerability, categorized under CWE-787.
5
Who can exploit FG-IR-22-494?
An authenticated attacker with access to the Command Line Interface can exploit FG-IR-22-494.