vulnerability

Fortinet FortiOS: Heap-based Buffer Overflow (CVE-2025-24477)

Severity
4
CVSS
(AV:L/AC:L/Au:M/C:P/I:P/A:P)
Published
Jul 15, 2025
Added
Jul 21, 2025
Modified
Aug 11, 2025

Description

A heap-based buffer overflow in Fortinet FortiOS versions 7.6.0 through 7.6.2, 7.4.0 through 7.4.7, 7.2.4 through 7.2.11 allows an attacker to escalate its privileges via a specially crafted CLI command

Solutions

fortios-upgrade-7_2_12fortios-upgrade-7_4_8fortios-upgrade-7_6_3
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.