Vulnerabilities > CVE-2021-44170 - Out-of-bounds Write vulnerability in Fortinet Fortios and Fortiproxy

047910
CVSS 6.7 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
fortinet
CWE-787

Summary

A stack-based buffer overflow vulnerability [CWE-121] in the command line interpreter of FortiOS before 7.0.4 and FortiProxy before 2.0.8 may allow an authenticated attacker to execute unauthorized code or commands via specially crafted command line arguments.

Vulnerable Configurations

Part Description Count
Application
Fortinet
37
OS
Fortinet
29

Common Weakness Enumeration (CWE)