Back to directory
WRITEUP #1080

XORtigate: Pre-authentication Remote Code Execution on Fortigate VPN (CVE-2023-27997)

RCEHeap overflowMemory corruption
by@cfreal_(Charles Fol)
Program
Fortinet (Fortigate VPN)
Published
Jun 13, 2023
Added to HackDex
Jun 13, 2023
Read Full Writeuphttps://blog.lexfo.fr/xortigate-cve-2023-27997.html
RELATED WRITEUPS
4 exploits, 1 bug: exploiting cve-2024-20017 4 different ways
RCEBuffer Overflow
Vulnerabilities in Open Source C2 Frameworks
RCEOS command injection
[2,500$ Bug Bounty Write-Up] Remote Code Execution (RCE) via unclaimed Node package
RCEDependency confusion
Attacking PowerShell CLIXML Deserialization
DeserializationInsecure deserialization
Zero-Click Calendar invite — Critical zero-click vulnerability chain in macOS
RCEArbitrary file write

Built with ❤️ by Shubham Rawat