Skip to content

ACSC Warns: Critical Fortinet Fortigate Flaw Poses Severe Threat

A critical vulnerability in Fortinet's Fortigate devices puts organisations at risk. The Australian Cyber Security Centre warns immediate action is needed.

In this picture we can see a fort and people.
In this picture we can see a fort and people.

ACSC Warns: Critical Fortinet Fortigate Flaw Poses Severe Threat

The Australian Cyber Security Centre (ACSC) has raised a critical alert regarding a severe vulnerability in Fortinet's Fortigate devices. The Remote Code Execution flaw, identified as CVE-2023-27997, poses a significant threat to organizations running unpatched systems.

The ACSC has issued a stark warning, urging affected organizations to apply available patches immediately. These patches, released on June 9, 2023, are available in FortiOS firmware versions 6.0.17, 6.2.15, 6.4.13, 7.0.12, and 7.2.5. The ACSC is not aware of any successful exploitation attempts against Australian organizations yet, but the potential impact is severe.

Exploitation of this vulnerability could grant unauthorized access to affected systems, enabling malicious actors to execute remote code. This could lead to data breaches, identity theft, or even privilege escalation. Organizations operating critical IT or email systems with unpatched vulnerabilities are particularly at risk.

The ACSC is closely monitoring the situation and stands ready to provide assistance and advice as required. Affected organizations are strongly advised to investigate for signs of compromise and apply the available patches without delay to mitigate the risk.

Read also:

Latest