Fortinet CVE-2024-55591 – Authentication bypass in Node.js websocket module

On January 15, Fortinet published a new PSIRT information regarding a newly discovered authentication bypass on FortiGate and FortiProxy when the administrative interface is publicly accessible.

Since the vulnerability is already being exploited, we urgently recommend the following:

  • FortiOS release 7.0.17 has been released on January 16, install it as soon as possible or use the workarounds described in the PSIRT information or described below.
  • Install FortiProxy versions 7.0.20 or 7.2.13.
  • Workaorund: Disable HTTP/HTTPS publicly accessible administrative interface or limit IP addresses that can reach the administrative interface via local-in policies as a workaround. Details can be found in the PSIRT information.

Loading

Leave a Reply

Your email address will not be published. Required fields are marked *