KNOWN EXPLOITED VULNERABILITY DOSSIER

CVE-2023-27997

Fortinet · FortiOS SSL-VPN

Heap-based buffer overflow in FortiOS SSL-VPN web portal allowing unauthenticated remote code execution abused in state-sponsored pre-positioning.

CISA KEV Added: 2023-06-13
Severity Rating: Critical (CVSS 9.8)
Legal Indictments: 1 Case
Catalog Status: Active KEV Mandate

Correlated Federal Court Cases & Indictments (1)

Associated Government Advisories

← Back to All CVEs Explore ATT&CK Matrix →