Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-27997
HistoryJun 13, 2023 - 9:15 a.m.

Heap overflow

2023-06-1309:15:00
PRIOn knowledge base
www.prio-n.com
13
heap overflow
fortios
fortiproxy
remote attacker
arbitrary code execution
crafted requests
nvd
ssl-vpn

9.8 High

AI Score

Confidence

High

0.135 Low

EPSS

Percentile

95.6%

A heap-based buffer overflow vulnerability [CWE-122] in FortiOS version 7.2.4 and below, version 7.0.11 and below, version 6.4.12 and below, version 6.0.16 and below and FortiProxy version 7.2.3 and below, version 7.0.9 and below, version 2.0.12 and below, version 1.2 all versions, version 1.1 all versions SSL-VPN may allow a remote attacker to execute arbitrary code or commands via specifically crafted requests.

9.8 High

AI Score

Confidence

High

0.135 Low

EPSS

Percentile

95.6%