Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-95wv-6wmf-f8vm

Опубликовано: 12 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

A buffer copy without checking size of input ('classic buffer overflow') vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.3, FortiClientWindows 7.2.0 through 7.2.11 may allow an unauthenticated attacker in a position to alter or craft DNS responses to the targeted host to execute arbitrary code via malicious packets.

A buffer copy without checking size of input ('classic buffer overflow') vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.3, FortiClientWindows 7.2.0 through 7.2.11 may allow an unauthenticated attacker in a position to alter or craft DNS responses to the targeted host to execute arbitrary code via malicious packets.

EPSS

Процентиль: 50%
0.00667
Низкий

8.1 High

CVSS3

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 8.1
nvd
около 1 месяца назад

A buffer copy without checking size of input ('classic buffer overflow') vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.3, FortiClientWindows 7.2.0 through 7.2.11 may allow an unauthenticated attacker in a position to alter or craft DNS responses to the targeted host to execute arbitrary code via malicious packets.

CVSS3: 8.1
fstec
около 1 месяца назад

Уязвимость средства защиты Fortinet FortiClient Windows, связанная с копированием буфера без проверки размера входных данных, позволяющая нарушителю изменить или подделать DNS-ответы целевого хоста и выполнить произвольный код

EPSS

Процентиль: 50%
0.00667
Низкий

8.1 High

CVSS3

Дефекты

CWE-120