Fortinet FortiOS Vulnerability

HIGH (7.5) Patch Available

Threat Intelligence

Low Risk
EPSS Score: 0.02% chance of exploitation (percentile: 6%)
🔍 Detection Tools: None available in major open-source tools
⚔️ Exploit Availability: No public exploits found

How we test →

What is it?

Fortinet FortiOS is a network security platform used by organizations to manage and secure their networks. This vulnerability allows attackers to execute arbitrary code or commands via specially crafted packets, potentially leading to unauthorized access to sensitive data.

Am I affected?

You're affected if you use A stack-based buffer overflow vulnerability. Affected versions: 7.4.8, 7.6.3 If you don't recognise this software, you're probably not affected.

Affected Products

Fortinet / FortiOS

How to fix

Upgrade to FortiOS 7.6.4 or above.
* Follow the recommended upgrade path using Fortinet's tool at: https://docs.fortinet.com/upgrade-tool
- Immediate mitigations:
* Disable security fabric access into interface.
* Only allow legit devices in Wifi Controller > Managed FortiAPs
* Note that auto-auth-extension-device is disabled by default

References