VYPR
Medium severity6.7NVD Advisory· Published Jul 18, 2022· Updated Jun 17, 2026

CVE-2021-44170

CVE-2021-44170

Description

A stack-based buffer overflow vulnerability [CWE-121] in the command line interpreter of FortiOS before 7.0.4 and FortiProxy before 2.0.8 may allow an authenticated attacker to execute unauthorized code or commands via specially crafted command line arguments.

Affected products

5
  • cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:*range: >=1.0.0,<=1.0.7
    • (no CPE)range: <2.0.8
    • (no CPE)range: FortiOS before 7.0.4; FortiProxy before 2.0.8
  • Fortinet/Fortios2 versions
    cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:*range: >=6.0.0,<=6.0.14
    • (no CPE)range: <7.0.4

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.