CVE-2024-26015 Information

Description

An incorrect parsing of numbers with different radices vulnerability [CWE-1389] in FortiProxy version 7.4.3 and below version 7.2.10 and below version 7.0.17 and below and FortiOS version 7.4.3 and below version 7.2.8 and below version 7.0.15 and below IP address validation feature may permit an unauthenticated attacker to bypass the IP blocklist via crafted requests.

Reference

https://fortiguard.fortinet.com/psirt/FG-IR-23-446

Share on: