logo

007

ID: cef73714-a3f2-4a78-87ec-2fb919637008

STIX ID: report--cef73714-a3f2-4a78-87ec-2fb919637008

Threat Score

85/100

Uploaded: 2026-05-14

Published Date: 2026-05-14

Last Modified Date: 2026-05-14

Created by: Thesis Research

TLP:GREEN
...
...
Fortinet published advisories for critical vulnerabilities including CVE-2026-21643 (FortiClientEMS SQL injection, CVSS 9.1) and the already-exploited CVE-2026-24858 affecting FortiOS/FortiManager/FortiAnalyzer/FortiProxy/FortiWeb (CVSS 9.4); the latter has been abused by attackers to create local admin accounts, grant VPN access, and exfiltrate firewall configurations, and Fortinet recommends immediate patching or upgrades.