CVE-2022-27491
published 2022-09-06CVE-2022-27491: A improper verification of source of a communication channel in Fortinet FortiOS with IPS engine version 7.201 through 7.214, 7.001 through 7.113, 6.001…
PriorityP346high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
1.26%
66.4th percentile
A improper verification of source of a communication channel in Fortinet FortiOS with IPS engine version 7.201 through 7.214, 7.001 through 7.113, 6.001 through 6.121, 5.001 through 5.258 and before 4.086 allows a remote and unauthenticated attacker to trigger the sending of "blocked page" HTML data to an arbitrary victim via crafted TCP requests, potentially flooding the victim.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fortinet | fortinet | — | — |
| fortinet | fortinet_fortios | — | — |
| fortinet | fortios | — | — |
| fortinet | fortios | — | — |
| fortinet | fortios | 6.0.0 – 6.0.14 | — |
| fortinet | fortios | >= 6.2.0 < 6.2.11 | 6.2.11 |
| fortinet | fortios | >= 6.4.0 < 6.4.9 | 6.4.9 |
| fortinet | fortios | >= 7.0.0 < 7.0.6 | 7.0.6 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Fortinet
TCP Middlebox Reflection
vendor_fortinet·2022-09-06·CVSS 6.8
CVE-2022-27491 [MEDIUM] TCP Middlebox Reflection
FG-IR-22-073: TCP Middlebox Reflection
A improper verification of source of a communication channel in Fortinet FortiOS with IPS engine version 7.201 through 7.214, 7.001 through 7.113, 6.001 through 6.121, 5.001 through 5.258 and before 4.086 allows a remote and unauthenticated attacker to trigger the sending of "blocked page" HTML data to an arbitrary victim via crafted TCP requests, potentially flooding the victim.
CVEs: CVE-2022-27491
CVSS: 6.8 (medium)
Affected products: FortiOS, Fortinet
GHSA
GHSA-x3p7-q669-8j5v: A improper verification of source of a communication channel in Fortinet FortiOS with IPS engine version 7
ghsa_unreviewed·2022-09-07
CVE-2022-27491 [HIGH] GHSA-x3p7-q669-8j5v: A improper verification of source of a communication channel in Fortinet FortiOS with IPS engine version 7
A improper verification of source of a communication channel in Fortinet FortiOS with IPS engine version 7.201 through 7.214, 7.001 through 7.113, 6.001 through 6.121, 5.001 through 5.258 and before 4.086 allows a remote and unauthenticated attacker to trigger the sending of "blocked page" HTML data to an arbitrary victim via crafted TCP requests, potentially flooding the victim.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-09-06
Published