216.73.216.233

CVE-2024-23113

· Published 09/10/2024 02:00 · Modified 05/03/2026 16:50 · Author: Cybersecurity and Infrastructure Security Agency

Labels: CVE-2024-23113

Essential information

Published
09/10/2024 02:00
Modified
05/03/2026 16:50
Author
Cybersecurity and Infrastructure Security Agency
Creator
Cybersecurity and Infrastructure Security Agency
CVSS
9.8 CRITICAL (v3.1)
CISA KEV
Yes
CWE
CVSS vector
CVSS:3.1/AV:N/C:H/I:H/A:H

CVSS metrics

Description

Fortinet FortiOS, FortiPAM, FortiProxy, and FortiWeb contain a format string vulnerability that allows a remote, unauthenticated attacker to execute arbitrary code or commands via specially crafted requests.

NVD status

NVD
View on NVD