CyberSec.Space Logo
Back to CVE Browser

CVE-2021-42756

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.0540%
EPSS Percentile0.29th
PublishedFeb 16, 2023
Last ModifiedNov 21, 2024

Vulnerability Description

Multiple stack-based buffer overflow vulnerabilities [CWE-121] in the proxy daemon of FortiWeb 5.x all versions, 6.0.7 and below, 6.1.2 and below, 6.2.6 and below, 6.3.16 and below, 6.4 all versions may allow an unauthenticated remote attacker to achieve arbitrary code execution via specifically crafted HTTP requests.

Affected Platforms (CPE)

📦
Fortinet

Fortiweb

>= 5.6.0 and < 6.0.8
📦
Fortinet

Fortiweb

>= 6.1.0 and < 6.1.3
📦
Fortinet

Fortiweb

>= 6.2.0 and < 6.2.7
📦
Fortinet

Fortiweb

>= 6.3.0 and < 6.3.17
📦
Fortinet

Fortiweb

>= 6.4.0 and <= 6.4.2

References & Advisories

Related Vulnerabilities