VDB

CVE-2023-23775

CVE-2023-23775 PUBLISHED CVSS 8.5 HIGH

A stack-based buffer overflow in Fortinet FortiOS version 7.4.0 through 7.4.1 and 7.2.0 through 7.2.7 and 7.0.0 through 7.0.12 and 6.4.6 through 6.4.15 and 6.2.9 through 6.2.16 and 6.0.13 through 6.0.18 allows attacker to execute unauthorized code or commands via specially crafted CLI commands.

EPSS 0.83% · 55.1th percentile

Risk Scores

CVSS 4.0
8.5
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N
EPSS Score
0.83%
55.1th percentile

Affected Products

VendorProductVersions
fortinetfortisoar7.0.0, 7.0.0, 7.0.0
FortinetFortiSOAR7.2.0, 7.0.0
FortinetFortiOS6.4.6, 7.4.0, 7.0.0
fortinetfortios7.4.0, 6.2.9, 6.4.6

Timeline

  • Jun 11, 2024 CVE Published
  • Jun 12, 2024 EPSS Score
  • Jul 5, 2024 EPSS Score
  • Jul 28, 2024 EPSS Score
  • Aug 2, 2024 CVE Updated
  • Aug 21, 2024 EPSS Score
  • Sep 13, 2024 EPSS Score
  • Oct 6, 2024 EPSS Score
  • Oct 29, 2024 EPSS Score
  • Nov 21, 2024 EPSS Score
  • Dec 15, 2024 EPSS Score
  • Jan 8, 2025 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›