Webinar: ✨ How Colgate-Palmolive Works Cloud Exposure Magic with Wiz & CyCognito ✨ Register Now Webinar:Wiz + CyCognito, Cloud Exposure Magic
CyCognito Blog

Posts tagged ‘Fortinet’

Search the Blog

By Emma Zaballos

On January 14, 2025, Fortinet disclosed a new critical (CVSS 9.8) authentication bypass vulnerability affecting FortiOS and FortiProxy. CVE-2024-55591 allows unauthenticated remote attackers to target the Node.js WebSocket module of the administrative interface and potentially gain super-admin privileges. CyCognito is helping customers identify assets vulnerable to CVE-2024-55591.

Read more about Emerging Threat: Fortinet CVE-2024-55591
By Emma Zaballos

CVE-2024-47575 (FortiJump) is a missing authentication vulnerability affecting critical functions in FortiManager and FortiManager Cloud versions. Approximately 60,000 assets are externally exposed worldwide. All CyCognito customers have access to an in-platform emerging threat announcement and methods to identify potentially vulnerable assets.

Read more about Emerging Threat: FortiJump (CVE-2024-47575)