← Voltar à pesquisa de CVEs

CVE-2026-71407

FortiOS

Descrição

A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiOS 7.6.1 through 7.6.6 may allow an unauthenticated attacker who can bypass stack protection and ASLR to execute arbitrary code or commands in the context of the WAD daemon via crafted sockets, only if the explicit proxy is configured with Kerberos authentication and SOCKS enabled.

CVSS 5.6EPSS 0.494%Risco 0.58
Ver fonte
Publicação
2026-08-12 13:17:25
Versões afetadas
>=7.6.1,<7.6.7
Tipo
Sistema operativo
Última alteração
2026-08-26 16:54:50
Vetor
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L