High severity7.5NVD Advisory· Published May 3, 2023· Updated Jun 17, 2026
CVE-2023-22640
CVE-2023-22640
Description
A out-of-bounds write in Fortinet FortiOS version 7.2.0 through 7.2.3, FortiOS version 7.0.0 through 7.0.10, FortiOS version 6.4.0 through 6.4.11, FortiOS version 6.2.0 through 6.2.13, FortiOS all versions 6.0, FortiProxy version 7.2.0 through 7.2.1, FortiProxy version 7.0.0 through 7.0.7, FortiProxy all versions 2.0, FortiProxy all versions 1.2, FortiProxy all versions 1.1, FortiProxy all versions 1.0 allows an authenticated attacker to execute unauthorized code or commands via specifically crafted requests.
Affected products
9cpe:2.3:a:fortinet:fortiproxy:1.0.0:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:fortinet:fortiproxy:1.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:fortinet:fortiproxy:1.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:fortinet:fortiproxy:1.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:fortinet:fortiproxy:2.0.0:*:*:*:*:*:*:*
- (no CPE)range: 7.2.0 - 7.2.1, 7.0.0 - 7.0.7, all versions 2.0, all versions 1.2, all versions 1.1, all versions 1.0
- (no CPE)range: 7.2.0
Patches
Vulnerability mechanics
References
1- fortiguard.com/psirt/FG-IR-22-475nvdVendor Advisory
News mentions
0No linked articles in our index yet.