A proof-of-concept exploit for a critical vulnerability in Fortinet's FortiSIEM product has emerged, paving the way for broad exploitation.
The vulnerability, tracked under CVE-2024-23108, was disclosed and patched in February, along with a related bug, CVE-2024-23109.
Both carry max-severity scores of 10 on the CVSS scale, and are unauthenticated command injection flaws that could potentially let threat actors use crafted API requests for remote code execution.
FortiSIEM is Fortinet's security information and event management platform, used for enabling enterprise cybersecurity operations centers.
A compromise could offer a significant beachhead for launching further incursions into corporate environments.
FortiSIEM versions impacted by the flaws include version 7.1.0 through 7.1.1; 7.0.0 through 7.0.2; 6.7.0 through 6.7.8; 6.6.0 through 6.6.3; 6.5.0 through 6.5.2; and 6.4.0 through 6.4.2.
This Cyber News was published on www.darkreading.com. Publication date: Wed, 29 May 2024 18:10:17 +0000