EXPOSURES › CVE-2021-44168
CVE-2021-44168
HIGH ⌖ ON CISA KEV · EXPLOITEDFortinet FortiOS allows arbitrary file downloads via an unpatched vulnerability that was actively exploited in the wild.
An out-of-bounds write flaw in FortiOS enables remote code execution when attackers send specially crafted requests to the 'execute restore src-vis' command. This unpatched vulnerability was actively exploited in the wild, allowing adversaries to download arbitrary files and execute code without integrity checks. DIB organizations must ensure all Fortinet devices are patched to the latest versions to prevent remote compromise and maintain compliance with security requirements.
Shame score — Fortinet shipped a critical RCE vulnerability that was actively exploited in the wild without a patch available, demonstrating severe negligence in patch management and security oversight.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Fortinet FortiOS "execute restore src-vis" downloads code without integrity checking, allowing an attacker to arbitrarily download files.
"A single misconfigured server sitting on the open internet has turned into one of the largest perimeter-security incidents of the decade."
"Hackers Exploit FortiGate Firewalls in Widespread Attacks to Steal Network Credentials"
"Fortinet FortiOS 'execute restore src-vis' downloads code without integrity checking, allowing an attacker to arbitrarily download files."