CVE-2023-39279
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Oct 17, 2023
Updated: Oct 19, 2023
CWE ID 787
CWE ID 121
Summary
CVE-2023-39279 is a recently disclosed stack-based buffer overflow vulnerability affecting SonicOS, the operating system used by Fortinet FortiGate firewalls. This issue is found in the getPacketReplayData.json URL endpoint, which can be exploited post-authentication. Successful exploitation results in a firewall crash, potentially allowing an attacker to gain unauthorized access or cause denial-of-service conditions. It is essential for organizations using Fortinet FortiGate firewalls to apply the available patch promptly to mitigate this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Sonicwall SonicOS
Affected Vendors
- SonicWall Inc.