← العودة للجدول
CVE-2023-33308
CVE-2023-33308 — A stack-based overflow vulnerability [CWE-124] in Fortinet FortiOS version 7.0.0
📅 2023-07-26
🔴 Critical 🔥 No NVD Exploit Fortinet CVSS 9.8 🎯 EPSS 7.6%

📋 الوصف الكامل

A stack-based overflow vulnerability [CWE-124] in Fortinet FortiOS version 7.0.0 through 7.0.10 and 7.2.0 through 7.2.3 and FortiProxy version 7.0.0 through 7.0.9 and 7.2.0 through 7.2.2 allows a remote unauthenticated attacker to execute arbitrary code or command via crafted packets reaching proxy policies or firewall policies with proxy mode alongside deep or full packet inspection.

💻 الأنظمة المتأثرة

Fortinet FortiOS | Apple iOS

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2023-33308

📡 المصدر

NVD

✅ الحلول والتخفيف

Update to v7.0.0 | Fortinet PSIRT Advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←