CVE-2026-71407
A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiOS 7.6.1 through 7.6.6 may allow an unauthenticated att
CVSS
5.6
Medium
EPSS
—
KEV
—
Exploit Today
—
0-100
Published: Aug 12, 2026 · Last modified: Aug 12, 2026 · CWE-121
Not enough EPSS history yet.
A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiOS 7.6.1 through 7.6.6 may allow an unauthenticated attacker who can bypass stack protection and ASLR to execute arbitrary code or commands in the context of the WAD daemon via crafted sockets, only if the explicit proxy is configured with Kerberos authentication and SOCKS enabled.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2024-140426.3 MED—
——0A vulnerability was found in Open5GS up to 2.7.1. This affects the function hss_ogs_diam_s6a_air_cb/hss_ogs_diam_s6a_ulr_cb of the file src/hss/hss-s6a-path.c of the component Diameter S6a Interface. Performing a manipulation of the argument os.len results in stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been made public and could be used. Upgrading to version 2.7.2 is able to mitigate this issue. The patch is named e89aa79efe629ae90f59dcdf8847c117d9a7da86. It is suggested to upgrade the affected component.4hCVE-2026-703467.8 HIG—
——0Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.7hCVE-2026-703447.8 HIG—
——0Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.23hCVE-2026-688177.8 HIG—
——0Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.4hCVE-2026-688167.8 HIG—
——0Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.4hCVE-2026-687957.8 HIG—
——0Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.5h