CVE-2024-47575

● KEV CRITICAL

A missing authentication for critical function in FortiManager 7.6.0, FortiManager 7.4.0 through 7.4.4, FortiManager 7.2.0 through 7.2.7, FortiManager 7.0.0 through 7.0.12, FortiManager 6.4.0 throu...

Affects 2 products across 1 vendor.

BCS9.88
CVSS 3.19.8
EPSS94.8%
Percentile100th
PatchPatched
KEV Added2024-10-23
CVSS Vector — Plain English Remotely exploitable over the network, low complexity, no authentication required, no user interaction needed, impact contained to the vulnerable component, full confidentiality impact, full integrity impact, full availability impact.
CWE Weakness Definitions
CWE-306: Missing Authentication for Critical Function

Software does not perform any authentication for functionality that requires a verified identity.

Related Attack Patterns (CAPEC)
CAPEC-12 Choosing Message Identifier
via CWE-306
CAPEC-36 Using Unpublished Interfaces or Functionality
via CWE-306
CAPEC-62 Cross Site Request Forgery
via CWE-306
CAPEC-166 Force the System to Reset Values
via CWE-306
CAPEC-216 Communication Channel Manipulation
via CWE-306

Mapping is CWE-to-CAPEC per MITRE CAPEC 3.9.

◆ SAGE Intelligence — CITED Relevance Research Team

CVE-2024-47575 affects multiple versions of FortiManager, including cloud and on-premises deployments, due to a missing authentication for critical functions. This vulnerability allows an attacker to execute arbitrary code or commands via specially crafted requests, posing a significant risk to the security and integrity of affected systems.

BSID: BS-2024-GLOBAL-269011-C • Model: Qwen/Qwen2.5-72B-Instruct-AWQ • Confidence: HIGH

Is this CVE in your environment?

BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.

Check My Environment →
Frequently Asked Questions
What is CVE-2024-47575?
CVE-2024-47575 affects multiple versions of FortiManager, including cloud and on-premises deployments, due to a missing authentication for critical functions. This vulnerability allows an attacker to execute arbitrary code or commands via specially crafted requests, posing a significant risk to the security and integrity of affected systems.
What is the CVSS score for CVE-2024-47575?
CVE-2024-47575 has CVSS 9.8 (Critical). Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H. EPSS: 94.8%.
Is CVE-2024-47575 actively exploited?
Yes. CVE-2024-47575 is in the CISA KEV catalog (added 2024-10-23). Active exploitation confirmed. Immediate patching required.
How do I remediate CVE-2024-47575?
Priority: IMMEDIATE. Advisory: https://fortiguard.fortinet.com/psirt/FG-IR-24-423 PSIRT: [email protected]
What systems are affected by CVE-2024-47575?
CVE-2024-47575 affects: Fortinet, Fortinet.
What NERC-CIP standard applies to CVE-2024-47575?
NERC CIP CIP-007 CIP-007-R2: This CVE violates CIP-007-R2 by allowing unauthorized access to critical functions, which could lead to the compromise of electronic security perimeters and control systems.
What IEC 62443 requirement maps to CVE-2024-47575?
IEC 62443 SR 7.6: This CVE maps to SR 7.6 because it involves a lack of proper authentication mechanisms, which is essential for protecting against unauthorized access and ensuring the integrity and availability of industrial control systems.
Vulnerability Details
CVE IDCVE-2024-47575
BSIDBS-2024-GLOBAL-269011-C BreachSpider Global ID
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Published2024-10-23
Last Modified2025-10-24
ICS Relevance70%
Weakness (CWE)
Domains
NETWORK-INFRA
SourceNVD
Official Description

A missing authentication for critical function in FortiManager 7.6.0, FortiManager 7.4.0 through 7.4.4, FortiManager 7.2.0 through 7.2.7, FortiManager 7.0.0 through 7.0.12, FortiManager 6.4.0 through 6.4.14, FortiManager 6.2.0 through 6.2.12, Fortinet FortiManager Cloud 7.4.1 through 7.4.4, FortiManager Cloud 7.2.1 through 7.2.7, FortiManager Cloud 7.0.1 through 7.0.12, FortiManager Cloud 6.4.1 through 6.4.7 allows attacker to execute arbitrary code or commands via specially crafted requests.

Source: NIST NVD / MITRE CVE Database

Attack Vector Analysis — CITED Relevance

The vulnerability can be exploited remotely without authentication, requiring no user interaction. An attacker can send specially crafted requests to the affected FortiManager instances, leading to the execution of arbitrary code or commands. This could result in complete system compromise, data exfiltration, or disruption of services.

Exploitation Likelihood: CRITICAL

Affected Products
VendorProductFixed Version
Fortinet Fortimanager
Fortinet Fortimanager Cloud
Remediation
View Vendor Advisory →

Remediation Priority: IMMEDIATE

Vendor PSIRT: [email protected]
Threat Intelligence
● Threat Intelligence Validated: July 2026 | Threat Age: 640 Days
CISA KEV● Active Exploitation Confirmed (added 2024-10-23)
Public ExploitNot confirmed
PoC CodeNot confirmed
● Virtual Patch — CITED Relevance SAGE Engine MEDIUM CONFIDENCE

Implement strict network segmentation and access controls to limit exposure to untrusted networks. Ensure that only authorized personnel have access to the management interfaces of affected FortiManager devices.

No reliable network detection signature exists for this vulnerability class — apply the compensating controls above and the vendor patch. SAGE only publishes a network rule when a concrete on-the-wire signature can be grounded in the advisory.

NERC CIP: CIP-007 CIP-007-R2
This CVE violates CIP-007-R2 by allowing unauthorized access to critical functions, which could lead to the compromise of electronic security perimeters and control systems.
IEC 62443: SR 7.6
This CVE maps to SR 7.6 because it involves a lack of proper authentication mechanisms, which is essential for protecting against unauthorized access and ensuring the integrity and availability of industrial control systems.

Virtual patch generated by CITED Relevance SAGE. Validate in isolated environment before production deployment. Compensating control only - does not replace vendor patch.

SAGE Enrichment Record — provenance & audit hash
ModelQwen/Qwen2.5-72B-Instruct-AWQ
ConfidenceHIGH
Enriched At2026-05-24
SHA-512 Audit Hasha5027271df97f3cfa58bb3c964fa1d5f8e9a5bf111fa5ed401904a67696e1a087f5e1ef0727280614d8dd4a9b65d6e36925a3ef071fbd245c2b37938835ad548
Related CVEs affecting Fortinet
CVE-2005-3057 10.0 The FTP component in FortiGate 2.8 running FortiOS 2.8MR10 and v3beta, and ot... CVE-2020-6649 9.8 An insufficient session expiration vulnerability in FortiNet's FortiIsolator ... CVE-2021-24020 9.8 A missing cryptographic step in the implementation of the hash digest algorit... CVE-2024-26011 9.8 A missing authentication for critical function in Fortinet FortiManager versi... CVE-2023-36550 9.8 A improper neutralization of special elements used in an os command ('os comm...
View all Fortinet CVEs →

This Vulnerability Is Being Actively Exploited

CVE-2024-47575 is on the CISA KEV list - confirmed active exploitation in the wild. BreachSpider alerts your team within 15 minutes when KEV vulnerabilities match your ICS assets.

Start Free KEV Monitoring →