Medium severity6.6NVD Advisory· Published Jul 14, 2026· Updated Aug 11, 2026
CVE-2026-59837
CVE-2026-59837
Description
A stack-based buffer overflow vulnerability in Fortinet FortiOS 7.4.0 through 7.4.1, FortiOS 7.2 all versions, FortiPAM 1.8.0 through 1.8.2, FortiPAM 1.7 all versions, FortiPAM 1.6 all versions, FortiPAM 1.5 all versions, FortiPAM 1.4 all versions, FortiPAM 1.3 all versions, FortiPAM 1.2 all versions, FortiPAM 1.1 all versions, FortiPAM 1.0 all versions, FortiProxy 7.4.0 through 7.4.13, FortiProxy 7.2 all versions may allow a privileged authenticated attacker who can bypass stack protection and ASLR to execute arbitrary code or commands via crafted HTTP requests.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:*range: >=7.2.0,<7.4.14
- (no CPE)range: 7.4.0 through 7.4.13, 7.2 all versions
cpe:2.3:o:fortinet:fortipam:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:fortinet:fortipam:*:*:*:*:*:*:*:*range: >=1.0.0,<1.8.3
- (no CPE)range: 1.8.0 through 1.8.2, 1.7 all versions, 1.6 all versions, 1.5 all versions, 1.4 all versions, 1.3 all versions, 1.2 all versions, 1.1 all versions, 1.0 all versions
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.