CVE-2022-42475 KEV
9.8
CRITICAL · CVSS 3.1 · EPSS 99.5% (pctl 100)
Patch first
On CISA KEV — known exploited in the wild, due 2023-01-03.
Description
A heap-based buffer overflow vulnerability [CWE-122] in FortiOS SSL-VPN 7.2.0 through 7.2.2, 7.0.0 through 7.0.8, 6.4.0 through 6.4.10, 6.2.0 through 6.2.11, 6.0.15 and earlier and FortiProxy SSL-VPN 7.2.0 through 7.2.1, 7.0.7 and earlier may allow a remote unauthenticated attacker to execute arbitrary code or commands via specifically crafted requests.
Scoring
| CVSS | 9.8 (CRITICAL, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 99.47% — more likely to be exploited than 100% of all CVEs |
| Weakness | CWE-197 |
| On CISA KEV | yes — remediate by 2023-01-03 |
| Public exploit | none known |
| Published | 2023-01-02 |
| Last modified | 2026-06-17 |
CISA KEV
| Name | Fortinet FortiOS Heap-Based Buffer Overflow Vulnerability |
|---|---|
| Added | 2022-12-13 |
| Due | 2023-01-03 |
| Vendor / product | Fortinet / FortiOS |
| Ransomware use | known |
Affected (23)
| Vendor | Product |
|---|---|
| fortinet | fim-7901e |
| fortinet | fim-7904e |
| fortinet | fim-7910e |
| fortinet | fim-7920e |
| fortinet | fim-7921f |
| fortinet | fim-7941f |
| fortinet | fortigate-6300f |
| fortinet | fortigate-6300f-dc |
| fortinet | fortigate-6500f |
| fortinet | fortigate-6500f-dc |
| fortinet | fortigate-6501f |
| fortinet | fortigate-6501f-dc |
| fortinet | fortigate-6601f |
| fortinet | fortigate-6601f-dc |
| fortinet | fortigate-7030e |
| fortinet | fortigate-7040e |
| fortinet | fortigate-7060e |
| fortinet | fortigate-7121f |
| fortinet | fortios |
| fortinet | fortiproxy |
| fortinet | fpm-7620e |
| fortinet | fpm-7620f |
| fortinet | fpm-7630e |
References
→ the Explorer · watch your stack · NVD