Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w5f6-wm5p-vwm3

Опубликовано: 16 фев. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

A stack-based buffer overflow vulnerability [CWE-121] in FortiWeb version 7.0.1 and earlier, 6.4 all versions, version 6.3.19 and earlier may allow a privileged attacker to execute arbitrary code or commands via specifically crafted CLI execute backup-local rename and execute backup-local show operations.

A stack-based buffer overflow vulnerability [CWE-121] in FortiWeb version 7.0.1 and earlier, 6.4 all versions, version 6.3.19 and earlier may allow a privileged attacker to execute arbitrary code or commands via specifically crafted CLI execute backup-local rename and execute backup-local show operations.

EPSS

Процентиль: 55%
0.00319
Низкий

7.2 High

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 6.6
nvd
почти 3 года назад

A stack-based buffer overflow vulnerability [CWE-121] in FortiWeb version 7.0.1 and earlier, 6.4 all versions, version 6.3.19 and earlier may allow a privileged attacker to execute arbitrary code or commands via specifically crafted CLI `execute backup-local rename` and `execute backup-local show` operations.

EPSS

Процентиль: 55%
0.00319
Низкий

7.2 High

CVSS3

Дефекты

CWE-787