PT-2025-6261 · Fortinet · Fortios

CVE-2024-40591

·

Published

2025-02-11

·

Updated

2025-07-17

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: FortiOS versions 7.6.0, 7.4.0 through 7.4.4, 7.2.0 through 7.2.9, and prior to 7.0.15 FortiOS versions 6.4.x
Description: The issue is related to an incorrect privilege assignment in FortiOS, allowing an authenticated admin with the Security Fabric permission to escalate their privileges to super-admin. This can be achieved by connecting the targeted FortiGate to a malicious upstream FortiGate controlled by the attacker.
Recommendations: For FortiOS versions 7.6.0, 7.4.0 through 7.4.4, 7.2.0 through 7.2.9, and prior to 7.0.15, update to a version that contains a fix for this issue. For FortiOS versions 6.4.x, update to a version that contains a fix for this issue. As a temporary workaround, consider restricting access to the Security Fabric permission to minimize the risk of exploitation.

Fix

LPE

Incorrect Privilege Assignment

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-01611
CVE-2024-40591

Affected Products

Fortios