CVE-2023-29182: Fortinet FortiOS

Medium severity, CVSS 6.7. EPSS: 0.3% chance of exploitation in the next 30 days.

A stack-based buffer overflow vulnerability [CWE-121] in Fortinet FortiOS before 7.0.3 allows a privileged attacker to execute arbitrary code via specially crafted CLI commands, provided the attacker were able to evade FortiOS stack protections.

Affected products

  • Fortinet FortiOS: from 6.2.0, before 7.0.4 (fixed in 7.0.4)

Published 2023-08-17. Last modified 2026-06-17.