Medium severity5.6NVD Advisory· Published Aug 12, 2026· Updated Sep 8, 2026
CVE-2026-71407
CVE-2026-71407
Description
A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiOS 7.6.1 through 7.6.6 may allow an unauthenticated attacker who can bypass stack protection and ASLR to execute arbitrary code or commands in the context of the WAD daemon via crafted sockets, only if the explicit proxy is configured with Kerberos authentication and SOCKS enabled.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1Patches
Vulnerability mechanics
References
1- fortiguard.fortinet.com/psirt/FG-IR-26-161nvdVendor Advisory
News mentions
1- Fortinet Patches Multiple Authentication Vulnerabilities in FortiWeb, FortiManager, and FortiClientCyber Security News · Aug 13, 2026