Feb. 9, 2024, 4:05 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

Fortinet has revealed a new critical Remote Code Execution (RCE) vulnerability in FortiOS SSL VPN, cautioning about potential exploitation in ongoing attacks.


Tracked as CVE-2024-21762 (CVSS: 9.6), the critical vulnerability is an out-of-bounds write issue in FortiOS. It enables unauthenticated attackers to execute RCE through maliciously crafted requests.


SOCRadar Vulnerability Card for CVE-2024-21762


The affected FortiOS versions include:



  • FortiOS 7.6

  • FortiOS 7.4

  • FortiOS 7.2

  • FortiOS 7.0

  • FortiOS 6.4

  • FortiOS 6.2

  • FortiOS 6.0


Fortinet advises upgrading to the latest versions …

attackers attacks code code execution critical critical vulnerability cve cve-2023-40547 cve-2024-22024 cvss exploitation exploited flaw fortinet fortios issue ivanti latest out-of-bounds out-of-bounds write rce remote code remote code execution shim ssl ssl vpn unauthenticated vpn vulnerability

Social Engineer For Reverse Engineering Exploit Study

@ Independent study | Remote

Cloud Security Analyst

@ Cloud Peritus | Bengaluru, India

Cyber Program Manager - CISO- United States – Remote

@ Stanley Black & Decker | Towson MD USA - 701 E Joppa Rd Bg 700

Network Security Engineer (AEGIS)

@ Peraton | Virginia Beach, VA, United States

SC2022-002065 Cyber Security Incident Responder (NS) - MON 13 May

@ EMW, Inc. | Mons, Wallonia, Belgium

Information Systems Security Engineer

@ Booz Allen Hamilton | USA, GA, Warner Robins (300 Park Pl Dr)