CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2024-23113

🔥 Known Exploited (CISA KEV)CRITICAL
9.8
CVSS Severity Score
EPSS Score0.0000%
EPSS Percentile0.00th
Published2024-02-15
Last Modified2026-06-17
Data SourcesNVDCISA KEV

Vulnerability Description

A use of externally-controlled format string in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13, FortiProxy versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.8, 7.0.0 through 7.0.14, FortiPAM versions 1.2.0, 1.1.0 through 1.1.2, 1.0.0 through 1.0.3, FortiSwitchManager versions 7.2.0 through 7.2.3, 7.0.0 through 7.0.3 allows attacker to execute unauthorized code or commands via specially crafted packets.

Affected Platforms (CPE)

📦
Fortinet

Fortiproxy

>= 7.0.0 and <= 7.0.14>= 7.2.0 and <= 7.2.8>= 7.4.0 and <= 7.4.2
📦
Fortinet

Fortiswitchmanager

>= 7.0.0 and <= 7.0.3>= 7.2.0 and <= 7.2.3
💻
Fortinet

Fortios

>= 7.0.0 and <= 7.0.13>= 7.2.0 and <= 7.2.6>= 7.4.0 and <= 7.4.2
💻
Fortinet

Fortipam

>= 1.0.0 and <= 1.0.3>= 1.1.0 and <= 1.1.2= 1.2.0

References & Advisories

相關漏洞威脅