Medium SEVERITY — Vulnerability

Out-Of-Bounds Write in administrative interface

CVSSv3 Score: 6.7 An out-of-bounds write vulnerability [CWE-787] in FortiWeb CGI daemon may allow a remote privileged attacker to execute arbitrary code or command via crafted HTTP requests. Revised on 2026-04-15 00:00:00

Platform
FortiGate / FortiOS
CVSS Score
6.7/10
Advisory
FG-IR-26-127
Published
15 April 2026
Views
3
Primary source: Review the official advisory at fortiguard.fortinet.com Kaynağa Git

Summary

CVSSv3 Score: 6.7 An out-of-bounds write vulnerability [CWE-787] in FortiWeb CGI daemon may allow a remote privileged attacker to execute arbitrary code or command via crafted HTTP requests. Revised on 2026-04-15 00:00:00

Source

  • [Open vendor advisory](https:\/\/fortiguard.fortinet.com\/psirt\/FG-IR-26-127)

This record was ingested automatically; verify the content before publication.

FortiGate / FortiOS — Related Advisories

VIEW ALL →