AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2023-33299

CRITICAL · CVSS 9.8 EPSS 24.30%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2023-06-23 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2023-33299
Severity
CRITICAL
CVSS
9.8
EPSS
24.30%
Fortinet

Original NVD Description

A deserialization of untrusted data in Fortinet FortiNAC below 7.2.1, below 9.4.3, below 9.2.8 and all earlier versions of 8.x allows attacker to execute unauthorized code or commands via specifically crafted request on inter-server communication port. Note FortiNAC versions 8.x will not be fixed.