A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiOS 7.6.1 through 7.6.6 may allow an unauthenticated attacker who can bypass stack protection and ASLR to execute arbitrary code or commands in the context of the WAD daemon via crafted sockets, only if the explicit proxy is configured with Kerberos authentication and SOCKS enabled.
References
| Link | Resource |
|---|---|
| https://fortiguard.fortinet.com/psirt/FG-IR-26-161 | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2026-08-12 13:17
Updated : 2026-09-08 20:55
NVD link : CVE-2026-71407
Mitre link : CVE-2026-71407
CVE.ORG link : CVE-2026-71407
JSON object : View
Products Affected
fortinet
- fortios
CWE
CWE-121
Stack-based Buffer Overflow
