Medium severity6.7NVD Advisory· Published Jul 18, 2022· Updated Jun 17, 2026
CVE-2021-44170
CVE-2021-44170
Description
A stack-based buffer overflow vulnerability [CWE-121] in the command line interpreter of FortiOS before 7.0.4 and FortiProxy before 2.0.8 may allow an authenticated attacker to execute unauthorized code or commands via specially crafted command line arguments.
Affected products
5cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:*range: >=1.0.0,<=1.0.7
- (no CPE)range: <2.0.8
- (no CPE)range: FortiOS before 7.0.4; FortiProxy before 2.0.8
Patches
Vulnerability mechanics
References
1- fortiguard.com/psirt/FG-IR-21-179nvdVendor Advisory
News mentions
0No linked articles in our index yet.