Multiple Vulnerabilities in Fortinet Products Could Allow for Remote Code Execution
ID: 355f5064-bf89-5f2c-8ec2-422e57ae7ab3
STIX ID: report--355f5064-bf89-5f2c-8ec2-422e57ae7ab3
Feed Name: CISecurity.org Advisories
Multiple critical vulnerabilities were disclosed in Fortinet products: an authentication bypass in FortiOS/FortiProxy (CVE-2024-55591) enabling potential super-admin access, a hard-coded cryptographic key in FortiSwitch (CVE-2023-37936) that may permit unauthenticated code execution, and a missing authentication flaw in FortiManager/FortiPortal (CVE-2024-35277) allowing extraction of managed device configurations; successful exploitation could lead to remote code execution and full system compromise.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
