Executive Risk Summary
"A stack-based overflow vulnerability in Fortinet FortiOS versions 7.0.0 through 7.0.10 and 7.2.0 through 7.2.3 allows a remote unauthenticated attacker to execute arbitrary code or command via crafted packets. This vulnerability poses a critical risk to the security and integrity of the affected systems, as it can be exploited to gain unauthorized access and control."
Operational Audit Arsenal
Manual Verification Required
This is a non-Windows asset (Fortinet). Use the target asset details above to verify your version against vendor advisories.
Patch Impact Forecast
High
Internal Work Notes
Technical Intelligence & Operational Utilities • Delivered Weekly
Intelligence Sources
Scope of Impact
Original NVD Description
"A stack-based overflow vulnerability [CWE-124] in Fortinet FortiOS version 7.0.0 through 7.0.10 and 7.2.0 through 7.2.3 and FortiProxy version 7.0.0 through 7.0.9 and 7.2.0 through 7.2.2 allows a remote unauthenticated attacker to execute arbitrary code or command via crafted packets reaching proxy policies or firewall policies with proxy mode alongside deep or full packet inspection."