A buffer overflow [CWE-121] in the TFTP client library of FortiOS before 6.4.7 and FortiOS 7.0.0 through 7.0.2, may allow an authenticated local attacker to achieve arbitrary code execution via specially crafted command line arguments.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://fortiguard.com/advisory/FG-IR-21-173 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: fortinet
Published: 2021-12-08T11:01:11
Updated: 2024-08-04T03:38:50.116Z
Reserved: 2021-10-20T00:00:00
Link: CVE-2021-42757
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-12-08T11:15:11.840
Modified: 2024-11-21T06:28:06.653
Link: CVE-2021-42757
Redhat
No data.