Header image

FortiManager Appliances Compromised Due to Zero Day

The vulnerability was disclosed in June.

A vulnerability in Fortinet’s FortiManager appliances has seen more than 50 compromises.

According to a report by Google Mandiant, the FortiJump zero-day flaw, tracked as CVE-2024-4755, has been actively exploited since late June. Any impacted FortiGate devices had their configuration data, user information, and FortiOS256-hashed credentials exfiltrated as a result of the intrusions.

"This data could be used by UNC5820 to further compromise the FortiManager, move laterally to the managed Fortinet devices, and ultimately target the enterprise environment," said Mandiant researchers, who noted lacking evidence suggesting additional payload deployment, system file tampering, or lateral network movement using the stolen data.

Such findings come less than a day after Fortinet publicly disclosed the active exploitation of the vulnerability, which is a missing authentication issue in the FortiGate to FortiManager Protocol API, in zero-day intrusions.

Dan Raywood
Dan Raywood Senior Editor SC Media UK

Dan Raywood is a B2B journalist with more than 20 years of experience, including covering cybersecurity for the past 16 years. He has extensively covered topics from Advanced Persistent Threats and nation-state hackers to major data breaches and regulatory changes.

He has spoken at events including 44CON, Infosecurity Europe, RANT Conference, BSides Scotland, Steelcon and ESET Security Days.

Outside work, Dan enjoys supporting Tottenham Hotspur, managing mischievous cats, and sampling craft beers.

Dan Raywood
Dan Raywood Senior Editor SC Media UK

Dan Raywood is a B2B journalist with more than 20 years of experience, including covering cybersecurity for the past 16 years. He has extensively covered topics from Advanced Persistent Threats and nation-state hackers to major data breaches and regulatory changes.

He has spoken at events including 44CON, Infosecurity Europe, RANT Conference, BSides Scotland, Steelcon and ESET Security Days.

Outside work, Dan enjoys supporting Tottenham Hotspur, managing mischievous cats, and sampling craft beers.

Upcoming Events

No events found.