all InfoSec news
Fortinet patches pre-auth RCE, update your Fortigate firewalls ASAP! (CVE-2023-27997)
Help Net Security www.helpnetsecurity.com
Fortinet has released several versions of FortiOS, the OS/firmware powering its Fortigate firewalls and other devices, without mentioning that they include a fix for CVE-2023-27997, a remote code execution (RCE) flaw that does not require the attacker to be logged in to exploit it. The vulnerability has been fixed in FortiOS versions 7.2.5, 7.0.12, 6.4.13, 6.2.15 and, apparently also in v6.0.17 (even though Fortinet officially stopped supporting the 6.0 branch last year). Enterprise admins are … More
The post …
auth code code execution cve devices don't miss exploit firewalls firmware fix flaw fortigate fortinet fortios hot stuff lexfo olympe cyberdefense patches rce remote code remote code execution security update update vulnerability