cbcvebase.
CVE-2023-41842
published 2024-03-12

CVE-2023-41842: A use of externally-controlled format string vulnerability [CWE-134] vulnerability in Fortinet allows a privileged attacker to execute unauthorized code or…

medium6.7CVSS 3.1
AVLACLPRHUINSUCHIHAH
A use of externally-controlled format string vulnerability [CWE-134] vulnerability in Fortinet allows a privileged attacker to execute unauthorized code or commands via specially crafted command arguments.

Affected

32 ranges· showing 25
VendorProductVersion rangeFixed in
fortinetfortianalyzer
fortinetfortianalyzer>= 6.2.0 < 7.0.107.0.10
fortinetfortianalyzer6.2.0 – 6.2.13
fortinetfortianalyzer6.4.0 – 6.4.15
fortinetfortianalyzer7.0.0 – 7.0.9
fortinetfortianalyzer>= 7.2.0 < 7.2.47.2.4
fortinetfortianalyzer7.2.0 – 7.2.3
fortinetfortianalyzer>= 7.4.0 < 7.4.27.4.2
fortinetfortianalyzer7.4.0 – 7.4.1
fortinetfortianalyzer-bigdata
fortinetfortianalyzer-bigdata6.4.5 – 6.4.7
fortinetfortianalyzer-bigdata7.0.1 – 7.0.6
fortinetfortianalyzer-bigdata7.2.0 – 7.2.5
fortinetfortianalyzer_big_data
fortinetfortianalyzer_big_data6.4.5 – 6.4.7
fortinetfortianalyzer_big_data7.0.1 – 7.0.6
fortinetfortianalyzer_big_data>= 7.2.0 < 7.2.67.2.6
fortinetfortianalyzerbigdata
fortinetfortimanager
fortinetfortimanager>= 6.2.0 < 7.0.107.0.10
fortinetfortimanager6.2.0 – 6.2.13
fortinetfortimanager6.4.0 – 6.4.15
fortinetfortimanager7.0.0 – 7.0.9
fortinetfortimanager>= 7.2.0 < 7.2.47.2.4
fortinetfortimanager7.2.0 – 7.2.3