High severity7.5NVD Advisory· Published Apr 8, 2025· Updated Jun 17, 2026
CVE-2023-37930
CVE-2023-37930
Description
Multiple issues including the use of uninitialized ressources [CWE-908] and excessive iteration [CWE-834] vulnerabilities vulnerability in Fortinet allows a VPN user to corrupt memory potentially leading to code or commands execution via specifically crafted requests.
Affected products
5cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:*range: >=7.0.0,<7.0.13
- cpe:2.3:a:fortinet:fortiproxy:7.2.6:*:*:*:*:*:*:*range: 7.2.0
Patches
Vulnerability mechanics
References
1- fortiguard.com/psirt/FG-IR-23-165nvdVendor Advisory
News mentions
0No linked articles in our index yet.