Now-Patched Fortinet FortiWeb Flaw Exploited in Attacks to Create Admin Accounts
Cybersecurity researchers are sounding the alert about an authentication bypass vulnerability in Fortinet Fortiweb WAF that could allow an attacker to take over admin accounts and completely compromise a device.
According to Benjamin Harris, CEO and founder of watchTowr, the watchTowr team is observing active and indiscriminate exploitation in the wild of what seems to be a silently patched vulnerability in Fortinet's FortiWeb product.
In version 8.0.2, the vulnerability was patched. It enables attackers to execute actions as a privileged user, with real-world exploitation centering on the addition of a new administrator account as a fundamental persistence method for the attackers.
The cybersecurity firm stated that it managed to successfully replicate the vulnerability and deve...


