SEPTEMBER 23, 2026
Live Feed
Back to database
Case File

CVE-2023-33299

CRITICAL · CVSS 9.8 EPSS 24.30%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2023-06-23 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. It affects Fortinet. Its EPSS score suggests a 24.3% probability of exploitation in the next 30 days.

CVE
CVE-2023-33299
Severity
CRITICAL
CVSS
9.8
EPSS
24.30%
Fortinet

Original NVD Description

A deserialization of untrusted data in Fortinet FortiNAC below 7.2.1, below 9.4.3, below 9.2.8 and all earlier versions of 8.x allows attacker to execute unauthorized code or commands via specifically crafted request on inter-server communication port. Note FortiNAC versions 8.x will not be fixed.

Related CVEs

Other vulnerabilities affecting the same vendor(s)