menu
techminis

A naukri.com initiative

google-web-stories
source image

Securityaffairs

3w

read

83

img
dot

Image Credit: Securityaffairs

U.S. CISA adds Fortinet FortiManager flaw to its Known Exploited Vulnerabilities catalog

  • The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the Fortinet FortiManager missing authentication vulnerability CVE-2024-47575 (CVSS v4 score: 9.8) to its Known Exploited Vulnerabilities (KEV) catalog.
  • A missing authentication flaw in FortiManager and FortiManager Cloud versions allows attackers to execute arbitrary code or commands through specially crafted requests.
  • Fortinet confirmed that the vulnerability CVE-2024-47575 has been exploited in the wild for exfiltrating files containing IPs, credentials, and configurations of managed devices.
  • CISA orders federal agencies to fix this vulnerability by November 13, 2024.

Read Full Article

like

5 Likes

For uninterrupted reading, download the app