Over 300,000+ Fortinet Firewalls are Vulnerable to a Critical RCE Flaw

The latest research shows Fortigate firewalls are vulnerable to remote code execution attempts. 490,000 affected SSL VPN interfaces are exposed on the internet, and roughly 69% are currently unpatched. Bishop Fox internally developed an exploit for CVE-2023-27997, a heap overflow in FortiOS—the OS behind FortiGate firewalls—that allows remote code execution.  CVE-2023-27997 is a heap-based buffer … Continue reading Over 300,000+ Fortinet Firewalls are Vulnerable to a Critical RCE Flaw