CVE-2024-31496

6.7MEDIUM

A stack-based buffer overflow vulnerability [CWE-121] in Fortinet FortiManager version 7.4.0 through 7.4.2 and before 7.2.5, FortiAnalyzer version 7.4.0 through 7.4.2 and before 7.2.5 and FortiAnalyze

公開日: 11/12/2024更新日: 1/21/2025

説明

A stack-based buffer overflow vulnerability [CWE-121] in Fortinet FortiManager version 7.4.0 through 7.4.2 and before 7.2.5, FortiAnalyzer version 7.4.0 through 7.4.2 and before 7.2.5 and FortiAnalyzer-BigData 7.4.0 and before 7.2.7 allows a privileged attacker to execute unauthorized code or commands via crafted CLI requests.

AI分析AIによる分析

影響を受ける製品

fortinetfortianalyzer
fortinetfortianalyzer
fortinetfortianalyzer_big_data
fortinetfortianalyzer_big_data
7.4.0
fortinetfortimanager
fortinetfortimanager

参照