6.7
CVSSv3

CVE-2023-36640

Published: 14/05/2024 Updated: 23/05/2024
CVSS v3 Base Score: 6.7 | Impact Score: 5.9 | Exploitability Score: 0.8

Vulnerability Summary

A use of externally-controlled format string in Fortinet FortiProxy versions 7.2.0 up to and including 7.2.4, 7.0.0 up to and including 7.0.10, 2.0.0 up to and including 2.0.13, 1.2.0 up to and including 1.2.13, 1.1.0 up to and including 1.1.6, 1.0.0 up to and including 1.0.7, FortiPAM versions 1.0.0 up to and including 1.0.3, FortiOS versions 7.2.0, 7.0.0 up to and including 7.0.12, 6.4.0 up to and including 6.4.14, 6.2.0 up to and including 6.2.15, 6.0.0 up to and including 6.0.16 allows malicious user to execute unauthorized code or commands via specially crafted commands

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

fortinet fortiproxy

fortinet fortipam

fortinet fortios 7.2.0

fortinet fortios