Heap-based buffer overflow in oftpd daemon
CVSSv3 Score: 7.3 A heap-based buffer overflow vulnerability [CWE-122] in FortiAnalyzer Cloud oftpd daemon may allow a remote unauthenticated attacker to execute arbitrary code or commands via specifically crafted requests. Successful exploitation would require a large amount of effort in preparation because of ASLR and network segmentation Revised on 2026-04-14 00:00:00
CSIRTS triage
- What
- A heap-based buffer overflow vulnerability may allow remote unauthenticated attackers to execute arbitrary code.
- Who is affected
- All users of FortiAnalyzer Cloud.
- Urgency
- This high-severity vulnerability requires urgent remediation due to the potential for remote code execution.
- Action
- Patch FortiAnalyzer Cloud to the latest version to mitigate this vulnerability.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch FortiAnalyzer Cloud
Get an email when a new FortiAnalyzer Cloud advisory drops — max one per day, one-click unsubscribe.
Details
Original advisory: https://fortiguard.fortinet.com/psirt/FG-IR-26-121
Exploitation outlook
EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.
- Low exploitation riskCVE-2026-228280.90% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 57% of all EPSS-scored CVEs.
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-22828 | coverage & exploitation status | NVD · CVE.org |
Recent advisories for Heap-based buffer overflow
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- highCVE-2026-75769: Substance3D - Painter is affected by a Heap-based Buffer Overflow vulnerability that could res…nvd · 2026-08-25
- highCVE-2026-75767: Substance3D - Painter is affected by a Heap-based Buffer Overflow vulnerability that could res…nvd · 2026-08-25
- highCVE-2026-75766: Substance3D - Painter is affected by a Heap-based Buffer Overflow vulnerability that could res…nvd · 2026-08-25
- highCVE-2026-75750: Substance3D - Painter is affected by a Heap-based Buffer Overflow vulnerability that could res…nvd · 2026-08-25
- highCVE-2026-48433: Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could re…nvd · 2026-08-25
- highCVE-2026-48432: Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could re…nvd · 2026-08-25
More from Fortinet FortiGuard PSIRT
- unknownServer-Side Request Forgery (SSRF)2026-08-12
- unknownContent-Encoding WAF Evasion2026-08-12
- unknownHeap overflow in kernel driver due to missing size validation2026-08-12
- unknownBroken access control in the RADIUS type admin group2026-08-12
- unknownUI DoS attack2026-08-12