Skip to content
This repository was archived by the owner on Apr 2, 2025. It is now read-only.
This repository was archived by the owner on Apr 2, 2025. It is now read-only.

CVE-2024-55591 : Fortios auth-bypass #7

@Basile-Professional

Description

@Basile-Professional

Initial Access T1190 Exploit Public-Facing Application Attackers exploit the FortiGate WebSocket vulnerability to gain access to the system without authentication.

Local setup

make a fake server with the key aspects in the comment on the router of my lab
Attack it with an exterior machine and the PoC
Capture the Network traffic of the attack with Tcpdump
find a way to spot it though the pcap

External sources

https://github.com/watchtowrlabs/fortios-auth-bypass-poc-CVE-2024-55591/blob/main/CVE-2024-55591-PoC.py
https://github.com/sysirq/fortios-auth-bypass-poc-CVE-2024-55591
https://github.com/exfil0/CVE-2024-55591-POC/tree/main

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions