Fortinet SSL VPN pre-auth RCE, exploitation in wild. Patch now. CVE-2024-21762
https://fortiguard.fortinet.com/psirt/FG-IR-24-015
I understand this is very easy to exploit, and applies to unsupported versions too.
Fortinet SSL VPN pre-auth RCE, exploitation in wild. Patch now. CVE-2024-21762
https://fortiguard.fortinet.com/psirt/FG-IR-24-015
I understand this is very easy to exploit, and applies to unsupported versions too.
If I have to name this one it’s gonna have a toothbrush pun in it, FYI. #threatintel
@GossiTheDog also this is great (from the 7.4.3 release notes)
@GossiTheDog fortunately the only forti box we manage has ssl vpn off because it’s sitting on 7.4.2 and telling me there’s nothing newer.
A @shodan search for FortiOS boxes:
product:"Fortinet FortiGate"
Add org:YourOrg or ssl:YourOrg to find yours.
Obviously validate it's got VPN enabled by visiting the page.
There's a LOT of them - 6 figures, one of the biggest SMB appliances.
@GossiTheDog FYI seems Fortigate still isn't (as of a couple of hours ago) offering 7.4.3 to people going into their fortinet device and checking for updates as they usually might, and so people might think they are up to date when they are not.... you have to pull the image from fortinet's site and upload it manually to upgrade atm :\
GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.
All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.