National Cyber Warfare Foundation (NCWF) Forums


Exploit Released For Critical Fortinet RCE Flaw: Patch Soon!


0 user ratings
2024-03-22 10:23:06
milo
Red Team (CNA)

 - archive -- 

FortiClientEMS (Enterprise Management Server), the security solution used for scalable and centralized management, was discovered with an SQL injection vulnerability that could allow an unauthenticated threat actor to execute unauthorized code or command on vulnerable servers through specially crafted requests.  This vulnerability exists due to improper neutralization of special elements used in an SQL command. […]


The post Exploit Released For Critical Fortinet RCE Flaw: Patch Soon! appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.



Free Webinar : Mitigating Vulnerability & 0-day Threats


Alert Fatigue that helps no one as security teams need to triage 100s of vulnerabilities.

:



  • The problem of vulnerability fatigue today

  • Difference between CVSS-specific vulnerability vs risk-based vulnerability

  • Evaluating vulnerabilities based on the business impact/risk

  • Automation to reduce alert fatigue and enhance security posture significantly


AcuRisQ, that helps you to quantify risk accurately:




Source: gbHackers
Source Link: https://gbhackers.com/exploit-fortinet-rce-flaw-patch/


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Red Team (CNA)



Copyright 2012 through 2024 - National Cyber Warfare Foundation - All rights reserved worldwide.