CVE-2021-26109

HIGH

FortiOS < 7.0.1 - Unauthenticated Integer Overflow in SSLVPN Memory Allocator

Title source: llm
STIX 2.1

Description

An integer overflow or wraparound vulnerability in the memory allocator of SSLVPN in FortiOS before 7.0.1 may allow an unauthenticated attacker to corrupt control data on the heap via specifically crafted requests to SSLVPN, resulting in potentially arbitrary code execution.

References (1)

Core 1
Core References
Patch, Vendor Advisory x_refsource_confirm
https://fortiguard.com/advisory/FG-IR-21-049

Scores

CVSS v3 8.1
EPSS 0.0126
EPSS Percentile 79.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-190
Status published
Products (2)
fortinet/fortios 7.0.0
fortinet/fortios 6.0.0 - 6.0.12
Published Dec 08, 2021
Tracked Since Feb 18, 2026