APP: Fortinet FortiManager fgfmsd Missing Authentication Command Injection

This signature detects attempts to exploit a known vulnerability against Fortinet FortiManager. A successful attack can lead to command injection and arbitrary code execution.

Extended Description

A missing authentication for critical function in FortiManager 7.6.0, FortiManager 7.4.0 through 7.4.4, FortiManager 7.2.0 through 7.2.7, FortiManager 7.0.0 through 7.0.12, FortiManager 6.4.0 through 6.4.14, FortiManager 6.2.0 through 6.2.12, Fortinet FortiManager Cloud 7.4.1 through 7.4.4, FortiManager Cloud 7.2.1 through 7.2.7, FortiManager Cloud 7.0.1 through 7.0.12, FortiManager Cloud 6.4.1 through 6.4.7 allows attacker to execute arbitrary code or commands via specially crafted requests.

Affected Products

Fortinet fortimanager

Short Name
APP:MISC:FRTNT-MNG-AUTH-CMD-INJ
Severity
Major
Recommended
True
Recommended Action
Drop
Category
APP
Keywords
Authentication CVE-2024-47575 Command FortiManager Fortinet Injection Missing fgfmsd
Release Date
12/06/2024
Supported Platforms

srx-branch-19.3

vsrx3bsd-19.2

srx-19.4

vsrx3bsd-19.4

srx-branch-19.4

vsrx-19.4

vsrx-19.2

srx-19.3

Sigpack Version
3763
Port
TCP/541,542
False Positive
Unknown
Vendors

Fortinet

Found a potential security threat?