Fortinet FortiOS是美国飞塔(Fortinet)公司的一套专用于FortiGate网络安全平台上的安全操作系统。该系统为用户提供防火墙、防病毒、IPSec/SSLVPN、Web内容过滤和反垃圾邮件等多种安全功能。 Fortinet FortiOS 存在安全漏洞,该漏洞源于其SSL-VPN允许未经身份认证的远程攻击者通过精心制作的恶意请求实现堆缓冲区溢出导致任意代码或命令执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Fortinet | FortiProxy | 7.2.0 ~ 7.2.1 | - |
|
| Fortinet | FortiOS | 7.2.0 ~ 7.2.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | test for the ioc described for FG-IR-22-398 | https://github.com/bryanster/ioc-cve-2022-42475 | POC Details |
| 2 | POC code to exploit the Heap overflow in Fortinet's SSLVPN daemon | https://github.com/scrt/cve-2022-42475 | POC Details |
| 3 | FortiOS buffer overflow vulnerability | https://github.com/Amir-hy/cve-2022-42475 | POC Details |
| 4 | None | https://github.com/Mustafa1986/cve-2022-42475-Fortinet | POC Details |
| 5 | CVE-2022-42475 飞塔RCE漏洞 POC | https://github.com/CKevens/CVE-2022-42475-RCE-POC | POC Details |
| 6 | None | https://github.com/natceil/cve-2022-42475 | POC Details |
| 7 | An exploit for CVE-2022-42475, a pre-authentication heap overflow in Fortinet networking products | https://github.com/0xhaggis/CVE-2022-42475 | POC Details |
| 8 | CVE-2022-42475 飞塔RCE漏洞 POC | https://github.com/3yujw7njai/CVE-2022-42475-RCE-POC | POC Details |
| 9 | CVE-2022-42475 飞塔RCE漏洞 POC | https://github.com/AiK1d/CVE-2022-42475-RCE-POC | POC Details |
| 10 | CVE-2022-42475 飞塔RCE漏洞 POC | https://github.com/P4x1s/CVE-2022-42475-RCE-POC | POC Details |
No public POC found.
Login to generate AI POCNo comments yet