CVE Tools

A Deeper Look at FortiJump (FortiManager CVE-2024-47575)

Bishop FoxBy Bishop Fox Researchers9 min read

Reported exploitedFortiManager
Read at Bishop Fox

Below is the opening; the full story is at Bishop Fox.

From Bishop Fox

CVE-2024-47575, also known as FortiJump, recently gained widespread attention after news of in-the-wild exploitation leaked prior to any security advisory. According to Mandiant, a threat actor has been exploiting this vulnerability since at least June 2024. Given the highly sensitive nature of centralized management devices, we decided to take a deeper look.…

Continue at Bishop Fox

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store