A heap-based buffer overflow vulnerability [CWE-122] in FortiOS SSL-VPN 7.2.0 through 7.2.2, 7.0.0 through 7.0.8, 6.4.0 through 6.4.10, 6.2.0 through 6.2.11, 6.0.15 and earlier and FortiProxy SSL-VPN 7.2.0 through 7.2.1, 7.0.7 and earlier may allow a remote unauthenticated attacker to execute arbitrary code or commands via specifically crafted requests.
No PoCs from references.
- https://github.com/0xhaggis/CVE-2022-42475
- https://github.com/0xor0ne/awesome-list
- https://github.com/20142995/nuclei-templates
- https://github.com/3yujw7njai/CVE-2022-42475-RCE-POC
- https://github.com/ARPSyndicate/cve-scores
- https://github.com/ARPSyndicate/cvemon
- https://github.com/AiK1d/CVE-2022-42475-RCE-POC
- https://github.com/Amir-hy/cve-2022-42475
- https://github.com/CKevens/CVE-2022-42475-RCE-POC
- https://github.com/IRB0T/IOC
- https://github.com/Jalexander798/JA_Tools-Cybersecurity-Resource-2
- https://github.com/Mustafa1986/cve-2022-42475-Fortinet
- https://github.com/Ostorlab/KEV
- https://github.com/Ostorlab/known_exploited_vulnerbilities_detectors
- https://github.com/P4x1s/CVE-2022-42475-RCE-POC
- https://github.com/PSIRT-REPO/CVE-2023-25610
- https://github.com/Sincan2/fortinet
- https://github.com/Threekiii/CVE
- https://github.com/abrahim7112/Vulnerability-checking-program-for-Android
- https://github.com/bachkhoasoft/awesome-list-ks
- https://github.com/bryanster/ioc-cve-2022-42475
- https://github.com/cyb3r-w0lf/nuclei-template-collection
- https://github.com/f1tao/awesome-iot-security-resource
- https://github.com/glkfc/CVE_Reproduce
- https://github.com/hheeyywweellccoommee/CVE-2023-27997-POC-FortiOS-SSL-VPN-buffer-overflow-vulnerability-ssijz
- https://github.com/izj007/wechat
- https://github.com/k0mi-tg/CVE-POC
- https://github.com/manas3c/CVE-POC
- https://github.com/natceil/cve-2022-42475
- https://github.com/node011/CVE-2023-27997-POC
- https://github.com/nomi-sec/PoC-in-GitHub
- https://github.com/qi4L/CVE-2023-25610
- https://github.com/rio128128/CVE-2023-27997-POC
- https://github.com/scrt/cve-2022-42475
- https://github.com/tadmaddad/fortidig
- https://github.com/tijldeneut/Security
- https://github.com/whoami13apt/files2
- https://github.com/whoforget/CVE-POC
- https://github.com/youwizard/CVE-POC