Aller au contenu

Fiche vulnérabilité

CVE-2024-46670 : faille élevée fortinet fortios (CVSS 7.5)

Description

An Out-of-bounds Read vulnerability [CWE-125] in FortiOS version 7.6.0, version 7.4.4 and below, version 7.2.9 and below and FortiSASE FortiOS tenant version 24.3.b IPsec IKE service may allow an unauthenticated remote attacker to trigger memory consumption leading to Denial of Service via crafted requests.

En bref

Sévérité
Élevée (CVSS 7.5)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitation active
Non signalée par la CISA
Publication
14 janv. 2025
Dernière mise à jour
17 juin 2026

Produits concernés

  • fortinet fortios

Références

Rechercher une autre vulnérabilité dans la base CVE