Fortinet Alert
3547Warning Date
Severity Level
Warning Number
Target Sector
13 December, 2022
● Critical
2022-5387
All
Fortinet has released security updates to address a vulnerability in the following products:
- FortiOS
- Version 7.2.0 through 7.2.2
- Version 7.0.0 through 7.0.8
- Version 6.4.0 through 6.4.10
- Version 6.2.0 through 6.2.11
- FortiOS-6K7K
- Version 7.0.0 through 7.0.7
- Version 6.4.0 through 6.4.9
- Version 6.2.0 through 6.2.11
- Version 6.0.0 through 6.0.14
The vulnerability is a heap-based buffer overflow in (sslvpnd) that may allow an unauthenticated remote attacker to execute arbitrary commands by sending a specially crafted request to the vulnerable product.
The CERT team encourages users to review Fortinet security advisory and apply the necessary updates: