Fortinet Vulnerability

M247 Security Alert – Fortinet Vulnerability CVE-2022-35843 - Major Issue

Tue, Dec 6th 2022, 17:30

M247 have been made aware and are currently investigating the Fortinet CVE-2022-35843 Published on 06/12/2022.

This is linked to Fortinet products using the following:
FortiOS version 7.2.0
FortiOS version 7.0.0 through 7.0.7
FortiOS version 6.4.0 through 6.4.9
FortiOS version 6.2 all versions
FortiOS version 6.0 all versions
FortiProxy version 7.0.0 through 7.0.5
FortiProxy version 2.0.0 through 2.0.10
FortiProxy version 1.2.0 all versions

At the current time this risk is being assessed and the required action to remediate this matter will be communicated to all M247 customers as soon as possible.

If you have any queries please contact M247 on 0161 822 2580.

Regards
M247 Support

Updated Tue, Dec 13th 2022, 11:40

M247 have been made aware and are currently investigating the Fortinet CVE-2022-35843 Published on 06/12/2022.

This is linked to Fortinet products using the following:
FortiOS version 7.2.0
FortiOS version 7.0.0 through 7.0.7
FortiOS version 6.4.0 through 6.4.9
FortiOS version 6.2 all versions
FortiOS version 6.0 all versions
FortiProxy version 7.0.0 through 7.0.5
FortiProxy version 2.0.0 through 2.0.10
FortiProxy version 1.2.0 all versions

Remediation: Working with Fortinet we have found that removing access to SSH on the device would be secured, this is actively being done where possible or patching will be needed.

We want you to know that we take this issue very seriously. Please accept our sincere apologies for any inconvenience this may cause.

Our M247 Support Team will be in contact as soon as possible to remediate this matter.

If you have any queries, please contact M247 support on 0161 822 2580 (opt 1, opt 1).

Regards,
M247 Support