Security Advisory
CVE-2016-6909
9.8
CRITICAL
Vulnerability Description
Buffer overflow in the Cookie parser in Fortinet FortiOS 4.x before 4.1.11, 4.2.x before 4.2.13, and 4.3.x before 4.3.9 and FortiSwitch before 3.4.3 allows remote attackers to execute arbitrary code via a crafted HTTP request, aka EGREGIOUSBLUNDER.
Published Date
August 24, 2016
Official Source
NIST NVD Advisory