Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qpph-3p23-86wr

Опубликовано: 13 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

A access of uninitialized pointer vulnerability [CWE-824] in Fortinet FortiProxy version 7.2.0 through 7.2.3 and before 7.0.9 and FortiOS version 7.2.0 through 7.2.4 and before 7.0.11 allows an authenticated attacker to repetitively crash the httpsd process via crafted HTTP or HTTPS requests.

A access of uninitialized pointer vulnerability [CWE-824] in Fortinet FortiProxy version 7.2.0 through 7.2.3 and before 7.0.9 and FortiOS version 7.2.0 through 7.2.4 and before 7.0.11 allows an authenticated attacker to repetitively crash the httpsd process via crafted HTTP or HTTPS requests.

EPSS

Процентиль: 35%
0.00147
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-824

Связанные уязвимости

CVSS3: 4.3
nvd
больше 2 лет назад

A access of uninitialized pointer vulnerability [CWE-824] in Fortinet FortiProxy version 7.2.0 through 7.2.3 and before 7.0.9 and FortiOS version 7.2.0 through 7.2.4 and before 7.0.11 allows an authenticated attacker to repetitively crash the httpsd process via crafted HTTP or HTTPS requests.

CVSS3: 4.3
fstec
больше 2 лет назад

Уязвимость реализации прикладного программного интерфейса административного интерфейса операционных систем FortiOS, позволяющая нарушителю завершить процесс httpsd

EPSS

Процентиль: 35%
0.00147
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-824