CVE-2026-24641
EUVD-2026-1052310.03.2026, 18:18
A NULL Pointer Dereference vulnerability [CWE-476] vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.2, FortiWeb 7.6.0 through 7.6.6, FortiWeb 7.4 all versions, FortiWeb 7.2 all versions, FortiWeb 7.0 all versions may allow an authenticated attacker to crash the HTTP daemon via crafted HTTP requests.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| fortinet | fortiweb | 7.0.0 ≤ 𝑥 < 7.6.7 |
| fortinet | fortiweb | 8.0.0 ≤ 𝑥 < 8.0.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
Vulnerability Media Exposure