Rewterz

Rewterz Threat Advisory – CVE-2024-22349 – SonicWall SonicOS Vulnerability

February 9, 2024
Rewterz

Rewterz Threat Alert – Remcos RAT – Active IOCs

February 9, 2024

Rewterz Threat Advisory – Multiple Fortinet FortiSIEM Vulnerabilities

Severity

High

Analysis Summary

CVE-2024-23108, CVE-2024-23109

Fortinet FortiSIEM could allow a remote attacker to execute arbitrary commands on the system, caused by OS command injection. By sending specially crafted API requests, an attacker could exploit this vulnerability to execute arbitrary commands on the system.

Impact

  • Gain Access

Indicators Of Compromise

CVE

  • CVE-2024-23108
  • CVE-2024-23109

Affected Vendors

Fortinet

Affected Products

  • Fortinet FortiSIEM 6.4
  • Fortinet FortiSIEM 6.5
  • Fortinet FortiSIEM 6.6
  • Fortinet FortiSIEM 6.7.0
  • Fortinet FortiSIEM 7.0.0

Remediation

Refer to FortiGuard Advisory for patch, upgrade or suggested workaround information.

FortiGuard Advisory

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.