Missing authentication for critical function in FortiManager - CVE-2024-47575
Published: October 23, 2024 / Updated: January 10, 2025
Vulnerability details
The vulnerability allows a remote attacker to compromise the affected system.
The vulnerability exists due to missing authentication in FortiManager fgfmd daemon. A remote non-authenticated attacker can send specially crafted requests to the system and execute arbitrary commands, resulting in full system compromise.
Note, the vulnerability is being actively exploited in the wild.
Affected software
How to mitigate CVE-2024-47575
Links to Public Exploits and PoC-codes
- Exploit #11051 - CVE-2024-47575-POC (CVE POC Exploit) (January 10, 2025)
- Exploit #11050 - CVE-2024-47575-POC (CVE POC Exploit) (January 10, 2025)
- Exploit #11049 - CVE-2024-47575-POC (CVE POC Exploit) (January 10, 2025)
- Exploit #10935 - Fortinet FortiManager Unauthenticated RCE (December 3, 2024)
- Exploit #10908 - cve-2024-47575-exp (November 22, 2024)
- Exploit #10885 - exploit-cve-2024-47575 (FortiManager Unauthenticated Remote Code Execution (CVE-2024-47575)) (November 22, 2024)
- Exploit #10868 - Fortijump-Exploit-CVE-2024-47575 (November 15, 2024)