CVE-2023-37930

Multiple issues including the use of uninitialized ressources [CWE-908] and excessive iteration [CWE-834] vulnerabilities in Fortinet FortiOS SSL VPN webmode version 7.4.0, version 7.2.0 through 7.2.5, version 7.0.1 through 7.0.11 and version 6.4.7 through 6.4.14 and Fortinet FortiProxy SSL VPN webmode version 7.2.0 through 7.2.6 and version 7.0.0 through 7.0.12 allows a VPN user to corrupt memory potentially leading to code or commands execution via specifically crafted requests.
Configurations

No configuration.

History

08 Apr 2025, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-08 14:15

Updated : 2025-04-08 18:13


NVD link : CVE-2023-37930

Mitre link : CVE-2023-37930

CVE.ORG link : CVE-2023-37930


JSON object : View

Products Affected

No product.

CWE
CWE-908

Use of Uninitialized Resource