Multiple buffer copy without checking size of input ('classic buffer overflow') vulnerabilities [CWE-120] in FortiADC version 7.2.0 and before 7.1.2 & FortiDDoS-F version 6.5.0 and before 6.4.1 allows a privileged attacker to execute arbitrary code or commands via specifically crafted CLI requests.
References
Link Resource
https://fortiguard.com/psirt/FG-IR-23-064 Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: fortinet

Published: 2023-11-14T18:07:59.407Z

Updated: 2023-11-14T18:07:59.407Z

Reserved: 2023-04-03T08:47:30.452Z


Link: CVE-2023-29177

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-11-14T19:15:24.337

Modified: 2023-11-21T18:47:17.137


Link: CVE-2023-29177

JSON object: View

cve-icon Redhat Information

No data.

CWE