CVE-2023-33307
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Jun 16, 2023
Updated: Nov 7, 2023
CWE ID 476
Summary
CVE-2023-33307 is a vulnerability affecting Fortinet FortiOS versions before 7.2.5 and 7.0.11, as well as FortiProxy versions before 7.2.3 and 7.0.9. This issue involves a null pointer dereference, enabling an attacker to cause a denial-of-service (DoS) to SSLVPN services. By sending a crafted network request, attackers can exploit this vulnerability and disrupt the SSLVPN functionality, potentially impacting network availability and security.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- FortiOS
- Fortinet FortiProxy
Affected Vendors
- Fortinet