VYPR
Medium severity6.5NVD Advisory· Published Jan 14, 2025· Updated Jun 17, 2026

CVE-2024-36504

CVE-2024-36504

Description

An out-of-bounds read vulnerability [CWE-125] in FortiOS SSLVPN web portal versions 7.4.0 through 7.4.4, versions 7.2.0 through 7.2.8, 7.0 all verisons, and 6.4 all versions may allow an authenticated attacker to perform a denial of service on the SSLVPN web portal via a specially crafted URL.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Fortinet/Fortios2 versions
    cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:*range: >=6.4.0,<7.2.9
    • cpe:2.3:o:fortinet:fortios:7.4.4:*:*:*:*:*:*:*range: 7.4.0
  • Range: 7.4.0-7.4.4, 7.2.0-7.2.8, 7.0.x, 6.4.x

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.