PT-2023-8534 · Fortinet · Fortiproxy+1

CVE-2024-21762

·

Published

2023-02-09

·

Updated

2026-09-04

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Fortinet FortiOS versions 7.4.0 through 7.4.2 Fortinet FortiOS versions 7.2.0 through 7.2.6 Fortinet FortiOS versions 7.0.0 through 7.0.13 Fortinet FortiOS versions 6.4.0 through 6.4.14 Fortinet FortiOS versions 6.2.0 through 6.2.15 Fortinet FortiOS versions 6.0.0 through 6.0.17 FortiProxy versions 7.4.0 through 7.4.2 FortiProxy versions 7.2.0 through 7.2.8 FortiProxy versions 7.0.0 through 7.0.14 FortiProxy versions 2.0.0 through 2.0.13 FortiProxy versions 1.2.0 through 1.2.13 FortiProxy versions 1.1.0 through 1.1.6 FortiProxy versions 1.0.0 through 1.0.7
Description An out-of-bounds write (a condition where data is written outside the intended memory buffer) in the sslvpnd service allows a remote unauthenticated attacker to execute unauthorized code or commands. This is achieved by sending specifically crafted HTTP requests. Real-world incidents of this issue being exploited have been recorded, including exploitation chains that fingerprint the target device to select specific shellcode and exfiltrate configuration files from the /data/config/ directory.
Recommendations As a temporary workaround, disable SSL VPN for all affected versions of FortiOS and FortiProxy. Note that disabling webmode is not a valid mitigation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

RCE

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2024-01125
CVE-2024-21762
FORTINETSSLVPN_CVE_2024_21762

Affected Products

Fortios
Fortiproxy