Fortinet Firewalls Under Siege: Exploitation of Critical Zero-Day CVE-2024-55591

Red | Vulnerability Report
Download PDF

A recently identified zero-day vulnerability in FortiOS and FortiProxy, tracked as CVE-2024-55591, is being actively exploited by threat actors to compromise Fortinet firewalls and breach enterprise networks. This critical flaw enables remote attackers to bypass authentication mechanisms and escalate their access to super-admin privileges. By leveraging specially crafted requests targeting the Node.js websocket module, attackers can exploit the vulnerability to gain full control over affected systems, posing a severe risk to organizational security.

What’s new on HivePro

Get through updates and upcoming events, and more directly in your inbox