POLICY-OTHER --
POLICY-OTHER Fortinet FortiManager arbitrary command execution attempt
This rule looks for a "get connect_tcp" FortiGate to FortiManager (FGFM) protocol command along with a "cmd" parameter that will execute a command on a FortiManager server that could potentially be malicious
This rule fires on command execution attempts via the FortiGate to FortiManager (FGFM) protocol sent to a FortiManager server that could potentially be malicious
Attacks/Scans seen in the wild
No known false positives
Cisco Talos Intelligence Group
Rule Categories::Policy::Other
N/A
Not Applicable
CVE-2024-47575 |
Loading description
|