Now-Patched Fortinet FortiWeb Flaw Exploited in Attacks to Create Admin Accounts

Cybersecurity researchers are sounding the alert about an authentication bypass vulnerability in Fortinet Fortiweb WAF that could allow an attacker to take over admin accounts and completely compromise a device.

According to Benjamin Harris, CEO and founder of watchTowr, the watchTowr team is observing active and indiscriminate exploitation in the wild of what seems to be a silently patched vulnerability in Fortinet’s FortiWeb product.

In version 8.0.2, the vulnerability was patched. It enables attackers to execute actions as a privileged user, with real-world exploitation centering on the addition of a new administrator account as a fundamental persistence method for the attackers.

The cybersecurity firm stated that it managed to successfully replicate the vulnerability and develop a functioning proof-of-concept (Poc). It has also released an artifact generator tool read more about Now-Patched Fortinet FortiWeb Flaw Exploited in Attacks to Create Admin Accounts.

Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.

Leave a Reply

Your email address will not be published. Required fields are marked *