Over 300,000 unpatched FortiGate firewalls can be found on Shodan that are vulnerable to an unauthenticated Remote Code Execution exploit, even after Fortinet released an advisory in mid-June. https://www.bleepingcomputer.com/news/security/300-000-plus-fortinet-firewalls-vulnerable-to-critical-fortios-rce-bug

#Fortinet #FortiGate #RCE #Exploit #Patching #VPN #Vulnerability #VulnerabilityManagement

300,000+ Fortinet firewalls vulnerable to critical FortiOS RCE bug

Hundreds of thousands of FortiGate firewalls are vulnerable to a critical security issue identified as CVE-2023-27997, almost a month after Fortinet released an update that addresses the problem.

BleepingComputer

This is far from the first vulnerability found in the FortiGate/FortiOS SSL VPN. I don't recommend it.

https://cve.mitre.org/cgi-bin/cvekey.cgi?keyword=Fortios+VPN

#Fortinet #FortiGate #RCE #Exploit #Patching #VPN #Vulnerability #VulnerabilityManagement #IInfoSec

CVE - Search Results

The mission of the CVE® Program is to identify, define, and catalog publicly disclosed cybersecurity vulnerabilities.