CVE-2024-47575 - FortiManager Authentication Bypass (v1.0.2)

This pack handles CVE-2024-47575 - FortiManager Authentication Bypass vulnerability

Author
Cortex XSOAR
Support
xsoar
URL
https://www.paloaltonetworks.com/cortex
Categories
Case Management

Playbooks (1)

README

FortiJump Vulnerability (CVE-2024-47575)

On October 25, 2023, a critical zero-day vulnerability was disclosed in FortiManager, a centralized management platform for Fortinet devices. This vulnerability, known as FortiJump and tracked as CVE-2024-47575, allows an unauthenticated attacker with network access to execute arbitrary code or commands on the affected system, potentially leading to complete system compromise. This vulnerability has been rated Critical severity (CVSS 9.8).

Impacted Versions

The vulnerability impacts the following FortiManager versions:

Patched Versions

This pack provides you with a first response kit which includes

References

Fortinet PSIRT Advisory FG-IR-24-423