CVE-2026-71407
A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiOS 7.6.1 through 7.6.6 may allow an unauthenticated att
CVSS
5.6
Medio
EPSS
—
KEV
—
Exploit Today
—
0-100
Publicado: 12 ago 2026 · Última mod.: 12 ago 2026 · CWE-121
Sin historial EPSS suficiente todavía.
A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiOS 7.6.1 through 7.6.6 may allow an unauthenticated attacker who can bypass stack protection and ASLR to execute arbitrary code or commands in the context of the WAD daemon via crafted sockets, only if the explicit proxy is configured with Kerberos authentication and SOCKS enabled.
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2024-140426.3 MED—
——0A vulnerability was found in Open5GS up to 2.7.1. This affects the function hss_ogs_diam_s6a_air_cb/hss_ogs_diam_s6a_ulr_cb of the file src/hss/hss-s6a-path.c of the component Diameter S6a Interface. Performing a manipulation of the argument os.len results in stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been made public and could be used. Upgrading to version 2.7.2 is able to mitigate this issue. The patch is named e89aa79efe629ae90f59dcdf8847c117d9a7da86. It is suggested to upgrade the affected component.5hCVE-2026-703467.8 ALT—
——0Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.8hCVE-2026-703447.8 ALT—
——0Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.1dCVE-2026-688177.8 ALT—
——0Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.5hCVE-2026-688167.8 ALT—
——0Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.5hCVE-2026-687957.8 ALT—
——0Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.5h