CVE-2023-44247
CVSS 3.1 Score 7.2 of 10 (high)
Details
Summary
CVE-2023-44247 is a newly disclosed vulnerability affecting Fortinet FortiOS versions prior to 7.0.0. This issue involves a double free memory vulnerability (CWE-415), which can be exploited by privileged attackers. By sending crafted HTTP or HTTPs requests, they can manipulate the software to execute arbitrary code or commands, potentially compromising the security of the impacted FortiOS system. Successful exploitation of this vulnerability could lead to serious consequences, including unauthorized access or data theft. Fortinet strongly advises users to upgrade to the latest FortiOS version to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- FortiOS
Affected Vendors
- Fortinet