Last updated on August 14, 2023 at 06:35 pm
We’re aware of a critical Remove Code Execution (RCE) vulnerability affecting Fortinet’s SSL VPN functionality. This vulnerability can be exploited without credentials and affects all SSL VPN appliances, even if multi-factor authentication is enabled.
Due to the critical nature of the vulnerability, we highly recommend that you upgrade your FortiOS firmware to the latest version.
The latest firmware versions are:
You can find more information at the CERT advisory here.