Private Modification of an Exploit for the CVE-2023-27997 (FortiOS) Vulnerability

Threat actor FromHell advertised a private modification of an exploit for the CVE-2023-27997 (FortiOS) vulnerability in xss.is.

CVE-2023-27997 is an unspecified vulnerability exists in the SSL/VPN component in Fortinet FortiOS 7.2.4 and earlier that, when exploited, allows an unauthenticated, remote attacker to execute arbitrary code. Several PoCs for the vulnerability are already published.

The vulnerability has 8.1 score in CVSS 3.1 and high risk. Also this vulnerability is exploited in the wild.

Some other exploits for this vulnerability;

https://github.com/hheeyywweellccoommee/CVE-2023-27997-POC-FortiOS-SSL-VPN-buffer-overflow-vulnerability-ssijz

https://github.com/imbas007/CVE-2023-27997-Check

https://blog.lexfo.fr/xortigate-cve-2023-27997.html

https://github.com/Pik-sec/cve-2023-27997

https://github.com/rio128128/CVE-2023-27997-POC

Leave a Reply