PR
add CVE-2022-42475
projectdiscovery/nuclei-templates#12154

Template / PR Information

Template for CVE-2022-42475 Although actual exploitation requires far more than in this script, this vulnerability can be confirmed by sending POST request to SSL-VPN endpoint with Content-Length: 4294967297 . On affected devices connection is suddenly dropped, and sslvpnd process crashes on FortiGate. Screenshot 2025-05-26 043754 Tested on 2 VM imagess FGT_VM64_HV-v7.2.2.F-build1255-FORTINET and FGT_VM64_HV-v7.2.3.F-build1262-FORTINET Note: VM image on free trial is very limited in terms of supported encryption, so I had to run nuclei in Debian 9 VM, because any modern OS doesn’t support such weak ciphers.

Template Validation

I’ve validated this template locally?

  • YES
  • NO

On version 7.2.2: Screenshot 2025-05-26 045839 $ nuclei -u https://192.168.50.105:4443 -code -t CVE-2022-42475.yaml -debug log: v7.2.2.txt Version 7.2.3: Screenshot 2025-05-26 050829 $ nuclei -u https://192.168.50.112:8443 -code -t CVE-2022-42475.yaml -debug log: v7.2.3.txt

Additional Details (leave it blank if not applicable)

/claim #10897

Additional References:

Claim

Total prize pool $200
Total paid $200
Status Approved
Submitted May 26, 2025
Last updated May 26, 2025

Contributors

PS

pszyszkowski

@pszyszkowski

100%

Sponsors

PR

ProjectDiscovery

@projectdiscovery

$200 paid