CVE-2024-46667
HIGHDescription
A allocation of resources without limits or throttling in Fortinet FortiSIEM 5.3 all versions, 5.4 all versions, 6.x all versions, 7.0 all versions, and 7.1.0 through 7.1.5 may allow an attacker to deny valid TLS traffic via consuming all allotted connections.
Is your site exposed to CVE-2024-46667?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| fortinet | fortisiem |
| fortinet | fortisiem |
| fortinet | fortisiem |
| fortinet | fortisiem |
| fortinet | fortisiem |
| fortinet | fortisiem |
| fortinet | fortisiem |
| fortinet | fortisiem |
| fortinet | fortisiem |
| fortinet | fortisiem |
| fortinet | fortisiem |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2024-46667? +
How severe is CVE-2024-46667? +
What products are affected by CVE-2024-46667? +
How do I check if I'm vulnerable to CVE-2024-46667? +
Related Vulnerabilities
mcp-framework is a framework for building Model Context Protocol (MCP) servers. In versions 0.2.21 and below, the readRequestBody() function in …
spdystream is a Go library for multiplexing streams over SPDY connections. In versions 0.5.0 and below, the SPDY/3 frame parser …
Allocation of Resources Without Limits or Throttling vulnerability in mtrudel bandit allows unauthenticated remote denial of service via memory exhaustion. …
Allocation of Resources Without Limits or Throttling vulnerability in mtrudel bandit allows unauthenticated remote denial of service via memory exhaustion …
gopacket provides packet processing capabilities for Go. In version 1.6.0 and earlier, the Diameter AVP decoder computes an AVP data …
gopacket provides packet processing capabilities for Go. In version 1.6.0 and earlier, the sFlow ExtendedGatewayFlow decoder in layers/sflow.go reads an …