Skip to main content

Fortinet Releases Multiple Security Advisories

The security advisories address a critical vulnerability in FortiClientLinux, a high vulnerability in FortiClientMac, and a high vulnerability in FortiOS and FortiProxy.

Report a cyber attack: call 0300 303 5222 or email [email protected]

Summary

The security advisories address a critical vulnerability in FortiClientLinux, a high vulnerability in FortiClientMac, and a high vulnerability in FortiOS and FortiProxy.


Threat details

Introduction

Fortinet has released security advisories to address multiple vulnerabilities.

The security advisories address one critical vulnerability in FortiClientLinux, one high vulnerability in FortiClientMac, and one high vulnerability in the SSL-VPN component of FortiOS and FortiProxy. FortiClient, FortiOS, and FortiProxy all provide a virtual private network solution.


Vulnerability details

CVE-2023-45590 is an improper control of generation of code vulnerability in FortiClientLinux with a CVSSv3 score of 9.4. An unauthenticated attacker could exploit this vulnerability to execute arbitrary code.

  • CVE-2023-45588 & CVE-2024-31492 - CWE-73 - External Control of File Name or Path

CVE-2023-45588 and CVE-2024-31492 are external control of file name or path vulnerabilities in FortiClientMac's installer with a CVSSv3 score of 7.8. A local attacker could exploit these vulnerabilities to execute arbitrary code by writing a malicious configuration file in the /tmp directory before starting the installation process.

  • CVE-2023-41677 - CWE-522 - Insufficiently Protected Credentials

CVE-2023-41677 is an insufficiently protected credentials vulnerability in the SSL-VPN component of FortiOS and FortiProxy with a CVSSv3 score of 7.5. A remote unauthenticated attacker could exploit this vulnerability to obtain the administrator cookie if a malicious link is clicked.


Remediation advice

Affected organisations are encouraged to review the following Fortinet Security Advisories below and apply the relevant updates.  


Remediation steps

Type Step
Patch

FortiClientLinux - Remote Code Execution due to dangerous nodejs configuration (Critical)


https://fortiguard.fortinet.com/psirt/FG-IR-23-087
Patch

FortiClientMac - Lack of configuration file validation (High)


https://fortiguard.fortinet.com/psirt/FG-IR-23-345
Patch

FortiOS & FortiProxy - administrator cookie leakage (High)


https://www.fortiguard.com/psirt/FG-IR-23-493


Last edited: 10 April 2024 1:25 pm