CVE-2024-33503

CVSS 3.1 Score 6.7 of 10 (medium)

Details

Published Jan 14, 2025
CWE ID 266

Summary

CVE-2024-33503 is a privilege escalation vulnerability affecting various Fortinet FortiManager and FortiAnalyzer versions, including 7.4.0 through 7.4.3, 7.2.0 through 7.2.5, 7.0.0 through 7.0.12, 6.4.0 through 6.4.14. An attacker can exploit this issue by executing specific shell commands, resulting in escalated privileges. This vulnerability poses a serious risk, as it enables attackers to gain unauthorized access and potentially compromise Fortinet systems. Users are strongly urged to update their FortiManager and FortiAnalyzer installations to the latest non-vulnerable versions to mitigate this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share