Fortinet’s PSIRT (Product Security Incident Response Team) has released their vulnerability findings for February 2024. Multiple command injection vulnerabilities in FortiSIEM supervisor.
Quality hardware and software vendors (like Fortinet) do their best to monitor and quickly remediate any vulnerabilities found in their products. Without patching those vulnerabilities, you leave yourself, your company, and your clients susceptible to attacks, potentially permitting threat actors access to your environment and data.
We at Helient monitor vulnerability release information from the security community and our vendors in order to stay on top of current threats and to ensure our client’s environments are patched and secured as quickly as possible.
This CVE affects the following:
Version | Affected | Solution |
FortiOS 7.4 | 7.4.0 through 7.4.1 | Upgrade to 7.4.2 or above |
FortiOS 7.2 | 7.2.0 through 7.2.6 | Upgrade to 7.2.7 or above |
FortiOS 7.0 | 7.0.0 through 7.0.13 | Upgrade to 7.0.14 or above |
Version | Affected | Solution |
FortiProxy 7.4 | 7.4.0 through 7.4.1 | Upgrade to 7.4.2 or above |
FortiProxy 7.2 | 7.2.0 through 7.2.7 | Upgrade to 7.2.8 or above |
FortiProxy 7.0 | 7.0 all versions | Migrate to a fixed release |
Version | Affected | Solution |
FortiOS 7.4 | 7.4.0 through 7.4.1 | Upgrade to 7.4.2 or above |
FortiOS 7.2 | 7.2.0 through 7.2.6 | Upgrade to 7.2.7 or above |
FortiOS 7.0 | 7.0 all versions | Migrate to a fixed release |
Version | Affected | Solution |
FortiOS 7.6 | Not affected | Not Applicable |
FortiOS 7.4 | 7.4.0 through 7.4.2 | Upgrade to 7.4.3 or above |
FortiOS 7.2 | 7.2.0 through 7.2.6 | Upgrade to 7.2.7 or above |
FortiOS 7.0 | 7.0.0 through 7.0.13 | Upgrade to 7.0.14 or above |
FortiOS 6.4 | 6.4.0 through 6.4.14 | Upgrade to 6.4.15 or above |
FortiOS 6.2 | 6.2.0 through 6.2.15 | Upgrade to 6.2.16 or above |
FortiOS 6.0 | 6.0 all versions | Migrate to a fixed release |
Version | Affected | Solution |
FortiOS 7.4 | 7.4.0 through 7.4.2 | Upgrade to 7.4.3 or above |
FortiOS 7.2 | 7.2.0 through 7.2.6 | Upgrade to 7.2.7 or above |
FortiOS 7.0 | 7.0.0 through 7.0.13 | Upgrade to 7.0.14 or above |
Version | Affected | Solution |
FortiClientEMS 7.2 | 7.2.0 through 7.2.2 | Upgrade to 7.2.3 or above |
FortiClientEMS 7.0 | 7.0.6 through 7.0.10 | Upgrade to 7.0.11 or above |
FortiClientEMS 7.0 | 7.0.0 through 7.0.4 | Upgrade to 7.0.11 or above |
FortiClientEMS 6.4 | 6.4 all versions | Migrate to a fixed release |
FortiClientEMS 6.2 | 6.2 all versions | Migrate to a fixed release |
Version | Affected | Solution |
FortiAnalyzer 7.4 | 7.4.0 through 7.4.1 | Upgrade to 7.4.2 or above |
FortiAnalyzer 7.2 | 7.2.0 through 7.2.3 | Upgrade to 7.2.4 or above |
FortiAnalyzer 7.0 | 7.0 all versions | Migrate to a fixed release |
FortiAnalyzer 6.4 | 6.4 all versions | Migrate to a fixed release |
FortiAnalyzer 6.2 | 6.2 all versions | Migrate to a fixed release |
Version | Affected | Solution |
FortiAnalyzer-BigData 7.4 | Not affected | Not Applicable |
FortiAnalyzer-BigData 7.2 | 7.2.0 through 7.2.5 | Upgrade to 7.2.6 or above |
FortiAnalyzer-BigData 7.0 | 7.0 all versions | Migrate to a fixed release |
FortiAnalyzer-BigData 6.4 | 6.4 all versions | Migrate to a fixed release |
FortiAnalyzer-BigData 6.2 | 6.2 all versions | Migrate to a fixed release |
Version | Affected | Solution |
FortiManager 7.4 | 7.4.0 through 7.4.1 | Upgrade to 7.4.2 or above |
FortiManager 7.2 | 7.2.0 through 7.2.3 | Upgrade to 7.2.4 or above |
FortiManager 7.0 | 7.0 all versions | Migrate to a fixed release |
FortiManager 6.4 | 6.4 all versions | Migrate to a fixed release |
FortiManager 6.2 | 6.2 all versions | Migrate to a fixed release |
Version | Affected | Solution |
FortiNAC 9.4 | 9.4.0 through 9.4.3 | Upgrade to 9.4.4 or above |
FortiNAC 9.2 | 9.2 all versions | Migrate to a fixed release |
FortiNAC 9.1 | 9.1 all versions | Migrate to a fixed release |
FortiNAC 8.8 | 8.8 all versions | Migrate to a fixed release |
FortiNAC 8.7 | 8.7 all versions | Migrate to a fixed release |
FortiNAC 8.6 | 8.6 all versions | Migrate to a fixed release |
FortiNAC 8.5 | 8.5 all versions | Migrate to a fixed release |
FortiNAC 8.3 | 8.3 all versions | Migrate to a fixed release |
FortiNAC 7.2 | 7.2.0 through 7.2.2 | Upgrade to 7.2.3 or above |