SSLVPN DOS

Summary

A NULL Pointer Dereference vulnerability [CWE-476] in FortiOS SSLVPN web portal may allow an authenticated attacker to perform a denial of service on the SSLVPN web portal via a specially crafted URL. This does not impact the SSL VPN tunnel mode.

Version Affected Solution
FortiOS 7.6 Not affected Not Applicable
FortiOS 7.4 7.4.0 through 7.4.4 Upgrade to 7.4.5 or above
FortiOS 7.2 7.2.0 through 7.2.8 Upgrade to 7.2.9 or above
FortiOS 7.0 7.0 all versions Migrate to a fixed release
FortiOS 6.4 6.4 all versions Migrate to a fixed release
Follow the recommended upgrade path using our tool at: https://docs.fortinet.com/upgrade-tool

Acknowledgement

Fortinet is pleased to thank XuZhao(NimdaKey) from 360 and Vang3lis and Cyth from VARAS@IIE for reporting this vulnerability under responsible disclosure.

Timeline

2025-01-14: Initial publication