Critical Fortinet FortiWLM Vulnerability Exposes Admin Controls to Attackers

Red | Vulnerability Report
Download PDF

Fortinet has recently revealed a critical vulnerability in its Fortinet Wireless Manager (FortiWLM) that could allow remote attackers to fully compromise devices. This flaw, identified as CVE-2023-34990, stems from a relative path traversal vulnerability, enabling attackers to execute unauthorized code or commands through specially crafted web requests. Discovered in May 2023, the issue was patched by the end of September 2023 but was publicly disclosed in December 2024.

What’s new on HivePro

Get through updates and upcoming events, and more directly in your inbox