{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3afortinetfortimanager_cloud/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:fortinet:fortimanager:*:*:*:*:*:*:*:*","cpe:2.3:a:fortinet:fortimanager:7.6.0:*:*:*:*:*:*:*","cpe:2.3:a:fortinet:fortimanager_cloud:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":9.8,"id":"CVE-2024-47575"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["FortiManager"],"_cs_severities":["medium"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":["Fortinet"],"content_html":"\u003cp\u003eThe German Federal Office for Information Security (BSI) has released a security advisory regarding a vulnerability in Fortinet FortiManager. This security feature bypass flaw allows a remote, unauthenticated attacker to circumvent established security measures. Given that FortiManager acts as a centralized management plane for Fortinet environments, this vulnerability carries significant risk for enterprise infrastructure. Defenders should monitor for unauthorized access attempts or anomalous behavior originating from network segments with access to the FortiManager management interface. Organizations using affected versions are urged to consult the official Fortinet PSIRT advisories to identify vulnerable firmware releases and implement necessary updates immediately.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of this vulnerability allows an unauthorized actor to bypass security mechanisms on the FortiManager appliance. This could lead to a loss of centralized oversight, unauthorized configuration changes, or further compromise of the managed network perimeter. The extent of potential damage includes full control over the management plane, which would enable the attacker to modify firewall rules, push malicious policies to downstream FortiGate devices, or exfiltrate sensitive configuration data.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritize patching for Fortinet FortiManager across all environments, specifically targeting the version ranges identified by Fortinet PSIRT associated with CVE-2024-47575. Restrict access to FortiManager management interfaces (typically ports 443, 8443, and 541) to known administrative subnets at the network level until patches are verified. Review logs for unexpected authentication requests or anomalies in administrative traffic patterns directed at the FortiManager web-based or CLI management endpoints.\u003c/p\u003e\n","date_modified":"2026-08-13T12:42:13Z","date_published":"2026-08-13T12:42:13Z","id":"https://feed.craftedsignal.io/briefs/2026-08-fortimanager-bypass/","summary":"A remote, unauthenticated attacker can exploit a vulnerability in Fortinet FortiManager to bypass security controls, necessitating immediate monitoring of management interface traffic.","title":"Fortinet FortiManager Security Feature Bypass Vulnerability","url":"https://feed.craftedsignal.io/briefs/2026-08-fortimanager-bypass/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:fortinet:fortimanager_cloud:*:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}