module

Fortinet FortiManager Unauthenticated RCE

Disclosed
2024-10-23
Created
2024-12-03

Description

This module exploits a missing authentication vulnerability affecting FortiManager and FortiManager
Cloud devices to achieve unauthenticated RCE with root privileges.

The vulnerable FortiManager versions are:
* 7.6.0
* 7.4.0 through 7.4.4
* 7.2.0 through 7.2.7
* 7.0.0 through 7.0.12
* 6.4.0 through 6.4.14
* 6.2.0 through 6.2.12

The vulnerable FortiManager Cloud versions are:
* 7.4.1 through 7.4.4
* 7.2.1 through 7.2.7
* 7.0.1 through 7.0.12
* 6.4 (all versions).

Author

sfewer-r7

Platform

Linux,Unix

Architectures

cmd

Module Options

To display the available options, load the module within the Metasploit console and run the commands ‘show options’ or ‘show advanced’:


msf > use exploit/linux/misc/fortimanager_rce_cve_2024_47575
msf exploit(fortimanager_rce_cve_2024_47575) > show targets
...targets...
msf exploit(fortimanager_rce_cve_2024_47575) > set TARGET < target-id >
msf exploit(fortimanager_rce_cve_2024_47575) > show options
...show and set options...
msf exploit(fortimanager_rce_cve_2024_47575) > exploit

Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.