CVE-2023-46715

An origin validation error [CWE-346] vulnerability in Fortinet FortiOS IPSec VPN version 7.4.0 through 7.4.1 and version 7.2.6 and below allows an authenticated IPSec VPN user with dynamic IP addressing to send (but not receive) packets spoofing the IP of another user via crafted network packets.
References
Link Resource
https://fortiguard.com/psirt/FG-IR-23-407 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-01-14 14:15

Updated : 2025-01-31 17:20


NVD link : CVE-2023-46715

Mitre link : CVE-2023-46715

CVE.ORG link : CVE-2023-46715


JSON object : View

Products Affected

fortinet

  • fortios
CWE
CWE-346

Origin Validation Error