Fortinet FortiOS
cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*
- >= 7.2.0, <= 7.2.7
- >= 7.0.0, <= 7.0.14
An integer overflow vulnerability has been identified in Fortinet FortiOS versions 7.2.0 through 7.2.7 and 7.0.0 through 7.0.14. This vulnerability may allow a remote, unauthenticated attacker to crash the 'csfd' daemon by sending a specially crafted request.
Exploitation of this vulnerability causes a denial-of-service condition by crashing the 'csfd' daemon.
Users can upgrade to Fortinet FortiOS 7.2.8 or 7.0.15 or above, depending on their current version. Fortinet FortiOS 6.4 users should migrate to a fixed release.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.