CVE-2020-29016

A stack-based buffer overflow vulnerability in FortiWeb 6.3.0 through 6.3.5 and version before 6.2.4 may allow an unauthenticated, remote attacker to overwrite the content of the stack and potentially execute arbitrary code by sending a crafted request with a large certname.
References
Link Resource
https://www.fortiguard.com/psirt/FG-IR-20-125 Vendor Advisory
Configurations

Configuration 1

cpe:2.3:a:fortinet:fortiweb:*:*:*:*:*:*:*:*
cpe:2.3:a:fortinet:fortiweb:*:*:*:*:*:*:*:*

Information

Published : 2021-01-14 04:15

Updated : 2021-01-20 08:58


NVD link : CVE-2020-29016

Mitre link : CVE-2020-29016

Products Affected
No products.
CWE