Dear all,
Fortinet is warning that a new critical remote code execution vulnerability in FortiOS SSL VPN is potentially being exploited in attacks.
The flaw (tracked as CVE-2024-21762 / FG-IR-24-015) received a 9.6 severity rating and is an out-of-bounds write vulnerability in FortiOS that allows unauthenticated attackers to gain remote code execution (RCE) via maliciously crafted requests.
New Fortinet RCE flaw in SSL VPN likely exploited in attacks (bleepingcomputer.com)
Thanks for sharing your thoughts and views @Early_Adopter .