Source |
The Hacker News |
Identifiant |
8627831 |
Date de publication |
2024-12-20 11:55:00 (vue: 2024-12-20 07:08:09) |
Titre |
Hackers Exploiting Critical Fortinet EMS Vulnerability to Deploy Remote Access Tools |
Texte |
A now-patched critical security flaw impacting Fortinet FortiClient EMS is being exploited by malicious actors as part of a cyber campaign that installed remote desktop software such as AnyDesk and ScreenConnect.
The vulnerability in question is CVE-2023-48788 (CVSS score: 9.3), an SQL injection bug that allows attackers to execute unauthorized code or commands by sending specially crafted
A now-patched critical security flaw impacting Fortinet FortiClient EMS is being exploited by malicious actors as part of a cyber campaign that installed remote desktop software such as AnyDesk and ScreenConnect.
The vulnerability in question is CVE-2023-48788 (CVSS score: 9.3), an SQL injection bug that allows attackers to execute unauthorized code or commands by sending specially crafted |
Notes |
★★
|
Envoyé |
Oui |
Condensat |
2023 48788 access actors allows anydesk attackers being bug campaign code commands crafted critical cve cvss cyber deploy desktop ems execute exploited exploiting flaw forticlient fortinet hackers impacting injection installed malicious now part patched question remote score: screenconnect security sending software specially sql such tools unauthorized vulnerability |
Tags |
Tool
Vulnerability
|
Stories |
|
Move |
|