Security News > 2025 > January > Week in review: 48k Fortinet firewalls open to attack, attackers “vishing” orgs via Microsoft Teams

Week in review: 48k Fortinet firewalls open to attack, attackers “vishing” orgs via Microsoft Teams
2025-01-26 09:00

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: 48,000+ internet-facing Fortinet firewalls still open to attack Despite last week’s confirmation of and warnings about long-standing exploitation of CVE-2024-55591, a critical vulnerability affecting Fortinet Fortigate firewalls, too many vulnerable devices are still accessible from the Internet and open to attack: over 48,000, according to data from the Shadowserver Foundation. Ransomware attackers are “vishing” organizations via Microsoft Teams The “email … More → The post Week in review: 48k Fortinet firewalls open to attack, attackers “vishing” orgs via Microsoft Teams appeared first on Help Net Security.


News URL

https://www.helpnetsecurity.com/2025/01/26/week-in-review-48k-fortinet-firewalls-open-to-attack-attackers-vishing-orgs-via-microsoft-teams/

Related Vulnerability

DATE CVE VULNERABILITY TITLE RISK
2025-01-14 CVE-2024-55591 Unspecified vulnerability in Fortinet Fortios and Fortiproxy
An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS version 7.0.0 through 7.0.16 and FortiProxy version 7.0.0 through 7.0.19 and 7.2.0 through 7.2.12 allows a remote attacker to gain super-admin privileges via crafted requests to Node.js websocket module.
network
low complexity
fortinet
critical
9.8

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Microsoft 368 51 1392 2849 169 4461
Fortinet 77 17 332 294 84 727