Rewterz
Rewterz Threat Alert – BlackSuit Encryptor Bolsters The Arsenal Of The Royal Ransomware Gang – Active IOCs
June 9, 2023
Rewterz
Rewterz Threat Advisory – CVE-2023-26132 – Node.js dottie module Vulnerability
June 12, 2023

Rewterz Threat Advisory – CVE-2023-27997 – Fortinet FortiGate and FortiOS Vulnerability

Severity

High

Analysis Summary

CVE-2023-27997

Fortinet FortiGate could allow a remote attacker to execute arbitrary code on the system, caused by an unspecified flaw in the SSL VPN function. By sending a specially crafted request, an attacker could exploit this vulnerability to execute arbitrary code on the system.

Impact

  • Code Execution

Indicators Of Compromise

CVE

  • CVE-2023-20188

Affected Vendors

Fortinet

Affected Products

  • Fortinet FortiGate
  • Fortinet FortiOS 6.0.16
  • Fortinet FortiOS 6.2.14
  • Fortinet FortiOS 6.4.12
  • Fortinet FortiOS 7.0.11
  • Fortinet FortiOS 7.2.4

Remediation

Upgrade to the latest version of FortiOS, available from the Fortinet Web site.

Fortinet Web site