PT-2026-24240 · Fortinet · Fortiswitchaxfixed
Published
2026-03-10
·
Updated
2026-03-18
·
CVE-2026-22627
CVSS v3.1
8.8
High
| Vector | AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
FortiSwitchAXFixed versions 1.0.0 through 1.0.1
Description
A buffer copy issue exists where the size of the input is not checked, potentially allowing an unauthenticated attacker on the same network to execute code or commands on the device. This can occur by sending a specially crafted LLDP (Link Layer Discovery Protocol) packet.
Recommendations
Update FortiSwitchAXFixed to a version beyond 1.0.1.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Fortiswitchaxfixed