CVE-2026-39811Integer Overflow or Wraparound in Fortinet Fortiweb

Severity
4.9MEDIUMNVD
EPSS
0.1%
top 74.16%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 14

Description

A integer overflow or wraparound vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.3, FortiWeb 7.6.0 through 7.6.6, FortiWeb 7.4 all versions, FortiWeb 7.2 all versions, FortiWeb 7.0 all versions may allow attacker to denial of service via

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:HExploitability: 1.2 | Impact: 3.6

Affected Packages1 packages

CVEListV5fortinet/fortiweb8.0.08.0.3+4

🔴Vulnerability Details

2
CVEList
CVE-2026-39811: A integer overflow or wraparound vulnerability in Fortinet FortiWeb 82026-04-14
GHSA
GHSA-vf2h-7fg9-fhfj: A integer overflow or wraparound vulnerability in Fortinet FortiWeb 82026-04-14

📋Vendor Advisories

1
Fortinet
Integer Overflow Denial of Service in administrative interface2026-04-14
CVE-2026-39811 — Integer Overflow or Wraparound | cvebase