CVE-2023-27997βFortinet FortiOS and FortiProxy SSL-VPN Heap-Based Buffer Overflow Vulnerability
PUBLISHEDvulnerability record
2023-06-13 Β· last modified June 21, 2025
Metadata
Vulnerability Name
Fortinet FortiOS and FortiProxy SSL-VPN Heap-Based Buffer Overflow Vulnerability
Description
Fortinet FortiOS and FortiProxy SSL-VPN contain a heap-based buffer overflow vulnerability which can allow an unauthenticated, remote attacker to execute code or commands via specifically crafted requests.
Known To Be Used in Ransomware Campaigns?
Action
Apply updates per vendor instructions.