Specially crafted requests can execute arbitrary code or commands in FortiManager

Post Reply
Shane1145
Posts: 1624
Joined: Wed Sep 25, 2024 2:31 pm

Specially crafted requests can execute arbitrary code or commands in FortiManager

Post by Shane1145 »

CVE-2024-47575 is a serious security vulnerability affecting FortiManager, a centralized management solution for Fortinet security products, designed to streamline network security operations. This vulnerability arises from a lack of proper authentication for critical functions within FortiManager versions 6.2.0 to 7.6.0 and its cloud equivalents. If exploited, it could allow an attacker to execute arbitrary code or commands, posing a significant risk to the integrity and confidentiality of an organization's network security infrastructure.

https://securityvulnerability.io/vulner ... 2024-47575
Post Reply