Fortinet stated the new CVE-2025-24472 flaw added to FG-IR-24-535 is not a zero-day and was fixed in January. CVE-2024-55591 was exploited & a workaround provided.
Copyright @2025 The University of Hong Kong. All Rights Reserved.
Home > Security Alerts > Fortinet discloses second firewall auth bypass patched in January
Fortinet stated the new CVE-2025-24472 flaw added to FG-IR-24-535 is not a zero-day and was fixed in January. CVE-2024-55591 was exploited & a workaround provided.