Technology NewsTechnology NewsTechnology News
  • Computing
  • AI
  • Robotics
  • Cybersecurity
  • Electric Vehicle
  • Wearables
  • Gaming
  • Space
Reading: Fortinet Alerts Users to Actively Exploited SSL VPN Vulnerability
Share
Font ResizerAa
Technology NewsTechnology News
Font ResizerAa
Search
  • Computing
  • AI
  • Robotics
  • Cybersecurity
  • Electric Vehicle
  • Wearables
  • Gaming
  • Space
Follow US
  • Cookie Policy (EU)
  • Contact
  • About
© 2025 NEWSLINKER - Powered by LK SOFTWARE
Cybersecurity

Fortinet Alerts Users to Actively Exploited SSL VPN Vulnerability

Highlights

  • Fortinet warns of actively exploited vulnerability.

  • Disabling SSL VPN suggested as immediate countermeasure.

  • Recent cyberattacks confirm the vulnerability's active exploitation.

NEWSLINKER
Last updated: 9 February, 2024 - 3:07 pm 3:07 pm
NEWSLINKER 1 year ago
Share
SHARE

Fortinet has raised the alarm about a severe vulnerability within its FortiOS software that could allow remote attackers to execute malicious code. This critical security gap, identified as CVE-2024-21762 with a high severity score of 9.6, is exploitable via specially crafted HTTP requests. The cybersecurity company has acknowledged that the flaw is currently being actively exploited, urging users to take immediate protective action.

Contents
Immediate Mitigation Measures RecommendedVulnerability Exploitation Confirmed

Immediate Mitigation Measures Recommended

In response to the threat, Fortinet has advised concerned users to temporarily disable the SSL VPN feature on the web portals to prevent potential breaches. The organization emphasizes that turning off web mode alone does not suffice as a safeguard. To fully mitigate the threat, disabling the entire SSL VPN component is necessary until a more permanent resolution is applied.

Vulnerability Exploitation Confirmed

Fortinet has confirmed that the exploitation of the CVE-2024-21762 vulnerability is not merely hypothetical but has been observed in active attacks. This announcement follows Fortinet’s recent advisories addressing critical OS command injection vulnerabilities in FortiSIEM, including CVE-2024-23108 and CVE-2024-23109. Furthermore, it has been reported that Chinese state-sponsored hackers exploited a separate zero-day vulnerability, CVE-2022-42475, in Fortinet’s VPN solutions, compromising Dutch defense networks.

The company has been diligent in communicating with its user base to ensure awareness of the security risks and the necessary steps to prevent exploitation. Users have been encouraged to stay abreast of cybersecurity news and updates provided by Fortinet on various platforms.

Fortinet’s proactive warning highlights the ever-present risks in the cybersecurity landscape and the critical importance of staying vigilant against potential threats. The organization continues to monitor the situation and provide updates on the latest developments surrounding this vulnerability.

The network security leader’s swift response to the security gap, including the dissemination of information and recommended defensive measures, demonstrates its commitment to safeguarding users against cyber threats.

You can follow us on Youtube, Telegram, Facebook, Linkedin, Twitter ( X ), Mastodon and Bluesky

You Might Also Like

US Authorities Dismantle Botnets and Indict Foreign Nationals

SonicWall Customers Face Spike in Device Vulnerabilities

Cyberattack Forces PowerSchool to Face Extortion Scandal

CrowdStrike Faces Workforce Reduction Amid Financial Shifts

Authorities Seize DDoS Platforms in Multi-National Operation

Share This Article
Facebook Twitter Copy Link Print
By NEWSLINKER
NEWS LINKER is your premier source for the latest in business, finance, science, gaming, and technology. We are dedicated to bringing you the most accurate, timely, and engaging content from across these dynamic industries. Dive deep into the world of cutting-edge developments, breakthroughs, market trends, and game-changing innovations..
Previous Article General Motors Hires Battery Expert to Address Ultium Project Challenges
Next Article Mobile Satellite Services Association Launches for Global Connectivity Expansion

Stay Connected

6.2kLike
8kFollow
2.3kSubscribe
1.7kFollow

Latest News

North American Robot Orders Stabilize in Early 2025
Robotics
UR15 Boosts Automation Speed in Key Industries
Robotics
NHTSA Questions Tesla’s Robotaxi Plans in Austin
Electric Vehicle
Tesla’s Secretive Test Car Activities Ignite Curiosity
Electric Vehicle
AI Reshapes Global Workforce Dynamics
AI Technology
NEWSLINKER – your premier source for the latest updates in ai, robotics, electric vehicle, gaming, and technology. We are dedicated to bringing you the most accurate, timely, and engaging content from across these dynamic industries. Join us on our journey of discovery and stay informed in this ever-evolving digital age.

ARTIFICAL INTELLIGENCE

  • Can Artificial Intelligence Achieve Consciousness?
  • What is Artificial Intelligence (AI)?
  • How does Artificial Intelligence Work?
  • Will AI Take Over the World?
  • What Is OpenAI?
  • What is Artifical General Intelligence?

ELECTRIC VEHICLE

  • What is Electric Vehicle in Simple Words?
  • How do Electric Cars Work?
  • What is the Advantage and Disadvantage of Electric Cars?
  • Is Electric Car the Future?

RESEARCH

  • Robotics Market Research & Report
  • Everything you need to know about IoT
  • What Is Wearable Technology?
  • What is FANUC Robotics?
  • What is Anthropic AI?
Technology NewsTechnology News
Follow US
About Us   -  Cookie Policy   -   Contact

© 2025 NEWSLINKER. Powered by LK SOFTWARE
Welcome Back!

Sign in to your account

Register Lost your password?