Fortinet SSL VPN Exploit Up for Sale on Dark Web
ID: 39fbcf9b-e7d7-57cd-9867-6b92ac88476c
STIX ID: report--39fbcf9b-e7d7-57cd-9867-6b92ac88476c
Feed Name: The Cyber Express
Threat Score
The report details a dark-web sale by 'Hunt3rkill3rs1' of an exploit for CVE-2024-21762, an out-of-bounds write in Fortinet FortiOS and FortiProxy SSL VPNs enabling remote code execution; it includes a Python PoC, cites Fortinet advisories and CISA's Known Exploited Vulnerabilities listing, and recommends upgrading to specified fixed versions or disabling SSL VPN as mitigation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
