CVE-2023-45584
Unknown Unknown - Not Provided
BaseFortify

Publication date: 2025-08-12

Last updated on: 2025-08-14

Assigner: Fortinet, Inc.

Description
A double free vulnerability [CWE-415] in Fortinet FortiOS version 7.4.0, version 7.2.0 through 7.2.5 and before 7.0.12, FortiProxy version 7.4.0 through 7.4.1, version 7.2.0 through 7.2.7 and before 7.0.13 and FortiPAM version 1.1.0 through 1.1.2 and before 1.0.3 allows a privileged attacker to execute code or commands via crafted HTTP or HTTPs requests.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2025-08-12
Last Modified
2025-08-14
Generated
2026-05-27
AI Q&A
2025-08-12
EPSS Evaluated
2026-05-25
NVD
EUVD
Affected Vendors & Products
Showing 7 associated CPEs
Vendor Product Version / Range
fortinet fortios From 7.4.0 (inc) to 7.4.9 (inc)
fortinet fortiproxy From 7.6.0 (inc) to 7.6.4 (inc)
fortinet fortiproxy From 7.6.0 (inc) to 7.6.4 (inc)
fortinet fortios From 7.4.0 (inc) to 7.4.9 (inc)
fortinet fortios 7.4.0
fortinet fortipam From 1.0.0 (inc) to 1.1.2 (inc)
fortinet fortiproxy From 7.6.0 (inc) to 7.6.4 (inc)
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-415 The product calls free() twice on the same memory address.
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?

This vulnerability is a double free issue in certain versions of Fortinet FortiOS, FortiProxy, and FortiPAM. A double free occurs when a program frees the same memory location twice, which can lead to memory corruption. In this case, a privileged attacker can exploit this flaw by sending specially crafted HTTP or HTTPS requests to execute arbitrary code or commands on the affected system.


How can this vulnerability impact me? :

If exploited, this vulnerability allows a privileged attacker to execute arbitrary code or commands on the affected device. This can lead to unauthorized control over the system, potentially resulting in data breaches, disruption of services, or further compromise of the network.


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart