A Deeper Look at FortiJump (FortiManager CVE-2024-47575)
Tags
attack-pattern: | Data Model Models Firmware - T1592.003 Hardware - T1592.001 Python - T1059.006 Server - T1583.004 Server - T1584.004 Tool - T1588.002 |
Common Information
Type | Value |
---|---|
UUID | c7dbd8af-dae7-4ee0-b3dd-104ba3cd8f63 |
Fingerprint | 2513127d0f5b9b89 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Nov. 1, 2024, midnight |
Added to db | Nov. 1, 2024, 5:21 p.m. |
Last updated | Nov. 17, 2024, 4:47 p.m. |
Headline | A Brief Look at FortiJump (FortiManager CVE-2024-47575) |
Title | A Deeper Look at FortiJump (FortiManager CVE-2024-47575) |
Detected Hints/Tags/Attributes | 47/1/18 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://bishopfox.com/blog/a-look-at-fortijump-cve-2024-47575 |
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 444 | ✔ | bishopfox.com | https://bishopfox.com/feeds/blog.rss | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 87 | cve-2024-47575 |
|
Details | CVE | 53 | cve-2024-23113 |
|
Details | Domain | 258 | nmap.org |
|
Details | Domain | 2 | socket.read |
|
Details | Domain | 2 | test-47575.py |
|
Details | Domain | 3 | ssl.py |
|
Details | Domain | 3 | libdmserver.so |
|
Details | File | 2 | root_fortinet_factory.cer |
|
Details | File | 2 | root_fortinet_factory.key |
|
Details | File | 32 | ssl.cer |
|
Details | File | 2 | test-47575.py |
|
Details | File | 3 | ssl.py |
|
Details | File | 2 | spi.bin |
|
Details | File | 10 | rootfs.gz |
|
Details | IPv4 | 2 | 192.168.250.103 |
|
Details | IPv4 | 3 | 192.168.250.124 |
|
Details | IPv4 | 619 | 0.0.0.0 |
|
Details | Url | 8 | https://nmap.org/ncat |