CVE-2021-44168: low-severity vulnerability in Fortinet FortiOS
Published · Updated
Prioritize patching. It under exploitation confirmed by CISA and has a public proof of concept.
Apply updates per vendor instructions.
A vulnerability in FortiOS allows a local authenticated user to download arbitrary files to the device when using the restore command, because the system doesn't verify if the downloaded files are legitimate before using them.
CWE-494 (Download of Code Without Integrity Check) in FortiOS <7.0.3 'execute restore src-vis' command allows local authenticated attackers to download and execute arbitrary files by crafting malicious update packages; requires local access and valid credentials; impacts file integrity and potential code execution on the device.
The full analysis of this CVE is available in Portuguese →
In the same product, most dangerous first.