May 15, 2025
Trending News

Fortinet’s FortiSIEM is vulnerable to two critical flaws

  • February 7, 2024
  • 0

Fortinet FortiSIEM is vulnerable to two critical bugs. These allow attackers to execute code remotely. Fortinet’s FortiSIEM contains two flaws that could allow hackers to execute code remotely.

Fortinet’s FortiSIEM is vulnerable to two critical flaws

Fortinet’s FortiSIEM is vulnerable to two critical flaws

Fortinet FortiSIEM is vulnerable to two critical bugs. These allow attackers to execute code remotely.

Fortinet’s FortiSIEM contains two flaws that could allow hackers to execute code remotely. Both CVE-2024-23108 and CVE-2024-23109 receive a maximum CVE score of 10. The flaws appear to be a variation of a previously discovered vulnerability: CVE-2023-34992. Fortinet refers customers to the problems on the same page, which has been online since October. The following products are at risk:

  • FortiSIEM version 7.1.0 to 7.1.1
  • FortiSIEM version 7.0.0 to 7.0.2
  • FortiSIEM version 6.7.0 to 6.7.8
  • FortiSIEM version 6.6.0 to 6.6.3
  • FortiSIEM version 6.5.0 to 6.5.2
  • FortiSIEM version 6.4.0 to 6.4.2

To update

Users can immediately update to version 7.1.2 to eliminate the dangerous leaks. Fortinet is also working on variations of the vulnerable versions of FortiSIEM for those who cannot or do not want to implement a major update for one reason or another. The security specialist has not yet given an exact date for this.

FortiSIEM is a security information and event management solution from Fortinet that aggregates and correlates data and logs from security solutions to identify security risks. According to Fortinet, a SIEM solution is an important but not an absolute solution in an overall security approach, as we have written previously.

Source: IT Daily

Leave a Reply

Your email address will not be published. Required fields are marked *