Medium severity6.7NVD Advisory· Published Jun 13, 2023· Updated Jun 17, 2026
CVE-2022-43953
CVE-2022-43953
Description
A use of externally-controlled format string in Fortinet FortiOS version 7.2.0 through 7.2.4, FortiOS all versions 7.0, FortiOS all versions 6.4, FortiOS all versions 6.2, FortiProxy version 7.2.0 through 7.2.1, FortiProxy version 7.0.0 through 7.0.7 allows attacker to execute unauthorized code or commands via specially crafted commands.
Affected products
8cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:*range: >=7.0.0,<=7.0.7
- cpe:2.3:a:fortinet:fortiproxy:7.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:fortinet:fortiproxy:7.2.1:*:*:*:*:*:*:*
- (no CPE)range: 7.2.0 - 7.2.1, 7.0.0 - 7.0.7
- (no CPE)range: 7.2.0
Patches
Vulnerability mechanics
References
1- fortiguard.com/psirt/FG-IR-22-463nvdVendor Advisory
News mentions
0No linked articles in our index yet.