A buffer over-read vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions, FortiProxy 7.6.0 through 7.6.5, FortiProxy 7.4.0 through 7.4.13, FortiProxy 7.2 all versions, FortiProxy 7.0 all versions may allow attacker to information disclosure via <insert attack vector here>
| Vendor | Product | Versions |
|---|---|---|
| fortinet | fortios | 7.6.0, 7.4.0, 7.2.0, 7.0.0, 6.4.0, 1.7.0, 1.6.0, 1.5.0, 1.4.0, 1.3.0, 1.2.0, 1.1.0, 1.0.0, 7.2.0, 7.0.0, 7.6.0, 7.4.0, 7.2.0, 7.0.0 |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| fortinet | fortios | cert_advisory | 90% |
| fortinet | fortiproxy | cert_advisory | 90% |
Updated description with new technical details, added FortiPAM to products, and changed severity to HIGH.
Initial creation