Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qq5m-xh4x-hv7f

Опубликовано: 10 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiManager 7.4.0 through 7.4.2, FortiManager 7.2.0 through 7.2.10, FortiManager 6.4 all versions may allow a remote unauthenticated attacker to execute unauthorized commands via crafted requests, if the service is enabled. The success of the attack depends on the ability to bypass the stack protection mechanisms.

A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiManager 7.4.0 through 7.4.2, FortiManager 7.2.0 through 7.2.10, FortiManager 6.4 all versions may allow a remote unauthenticated attacker to execute unauthorized commands via crafted requests, if the service is enabled. The success of the attack depends on the ability to bypass the stack protection mechanisms.

EPSS

Процентиль: 56%
0.0087
Низкий

8.1 High

CVSS3

Дефекты

CWE-121
CWE-787

Связанные уязвимости

CVSS3: 8.1
nvd
5 месяцев назад

A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiManager 7.4.0 through 7.4.2, FortiManager 7.2.0 through 7.2.10, FortiManager 6.4 all versions may allow a remote unauthenticated attacker to execute unauthorized commands via crafted requests, if the service is enabled. The success of the attack depends on the ability to bypass the stack protection mechanisms.

CVSS3: 8.1
fstec
5 месяцев назад

Уязвимость службы fgtupdates программного средства централизованного управления устройствами Fortinet FortiManager, позволяющая нарушителю обойти существующие механизмы безопасности

EPSS

Процентиль: 56%
0.0087
Низкий

8.1 High

CVSS3

Дефекты

CWE-121
CWE-787