Skip to main content

300,000+ Fortinet firewalls vulnerable to critical FortiOS RCE bug


Jasper_The_Rasper
Moderator
Forum|alt.badge.img+54

July 3, 2023 By Bill Toulas

 

300,000+ Fortinet firewalls vulnerable to critical FortiOS RCE bug

Hundreds of thousands of FortiGate firewalls are vulnerable to a critical security issue identified as CVE-2023-27997, almost a month after Fortinet released an update that addresses the problem.

The vulnerability is a remote code execution with a severity score of 9.8 out of 10 resulting from a heap-based buffer overflow problem in FortiOS, the operating system that connects all Fortinet networking components to integrate them in the vendor's Security Fabric platform.

CVE-2023-27997 is exploitable and allows an unauthenticated attacker to execute code remotely on vulnerable devices with the SSL VPN interface exposed on the web. In an advisory in mid-June, the vendor warned that the issue may have been exploited in attacks.

Fortinet addressed the vulnerability on June 11 before disclosing it publicly, by releasing FortiOS firmware versions 6.0.17, 6.2.15, 6.4.13, 7.0.12, and 7.2.5.

 

>> Full Article <<

2 replies

russell.harris
Popular Voice
Forum|alt.badge.img+5

Wow. That’s alot of firewalls.

I’ve sent this to our network team to check they’ve patched all our client’s Fortigate firewalls as we have quite a few in circulation.


MajorHavoc
Bronze VIP
Forum|alt.badge.img+25
  • Bronze VIP
  • 1278 replies
  • July 4, 2023

Ouch. This is not good, and especially not good since they thought they fixed it. Reassessment time was on FortiGate!  
 

 


Reply