CVE-2023-37930
08.04.2025, 14:15
Multiple issues including the use of uninitialized ressources [CWE-908] and excessive iteration [CWE-834] vulnerabilities vulnerability in Fortinet allows a VPN user to corrupt memory potentially leading to code or commands execution via specifically crafted requests.Enginsight
| Vendor | Product | Version |
|---|---|---|
| fortinet | fortios | 6.4.7 ≤ 𝑥 < 6.4.15 |
| fortinet | fortios | 7.0.1 ≤ 𝑥 < 7.0.13 |
| fortinet | fortios | 7.2.0 ≤ 𝑥 < 7.2.6 |
| fortinet | fortios | 7.4.0 |
| fortinet | fortiproxy | 7.0.0 ≤ 𝑥 < 7.0.13 |
| fortinet | fortiproxy | 7.2.0 ≤ 𝑥 < 7.2.7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration