Specially crafted requests can execute arbitrary code or commands in FortiManager
Posted: Sat Aug 09, 2025 2:42 pm
CVE-2024-47575 is a serious security vulnerability affecting FortiManager, a centralized management solution for Fortinet security products, designed to streamline network security operations. This vulnerability arises from a lack of proper authentication for critical functions within FortiManager versions 6.2.0 to 7.6.0 and its cloud equivalents. If exploited, it could allow an attacker to execute arbitrary code or commands, posing a significant risk to the integrity and confidentiality of an organization's network security infrastructure.
https://securityvulnerability.io/vulner ... 2024-47575
https://securityvulnerability.io/vulner ... 2024-47575