Fortinet FortiOS and FortiProxy Authentication Bypass Vulnerability
FortiOS 7.0.0부터 7.0.16까지와 FortiProxy 7.2.0부터 7.2.12까지 및 7.0.0부터 7.0.19까지에 영향을 미치는 대체 경로 또는 채널을 사용한 인증 우회 취약점[cwe-288]으로 인해, Security Fabric이 활성화된 경우 업스트림 및 다운스트림 장치의 일련번호를 미리 알고 있는 인증되지 않은 원격 공격자가 조작된 CSF 프록시 요청을 통해 다운스트림 장치에서 super-admin 권한을 획득할 수 있습니다.
FortiOS 7.0.0부터 7.0.16까지와 FortiProxy 7.2.0부터 7.2.12까지 및 7.0.0부터 7.0.19까지에 영향을 미치는 대체 경로 또는 채널을 사용한 인증 우회 취약점[cwe-288]으로 인해, Security Fabric이 활성화된 경우 업스트림 및 다운스트림 장치의 일련번호를 미리 알고 있는 인증되지 않은 원격 공격자가 조작된 CSF 프록시 요청을 통해 다운스트림 장치에서 super-admin 권한을 획득할 수 있습니다.
한국어 설명은 영문 원문을 기준으로 제공됩니다. 제품명·버전·보안 식별자는 아래 원문과 함께 확인할 수 있습니다.
영문 원문 보기
An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS 7.0.0 through 7.0.16 and FortiProxy 7.2.0 through 7.2.12, 7.0.0 through 7.0.19 may allow a remote unauthenticated attacker with prior knowledge of upstream and downstream devices serial numbers to gain super-admin privileges on the downstream device, if the Security Fabric is enabled, via crafted CSF proxy requests.
Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
조치 기한: 2025.04.08
해당사항 확인방법
Fortinet FortiOS, FortiProxy의 현재 전체 버전이 공식 영향 범위(Fortinet FortiOS, FortiProxy >= 7.0.0 <= 7.0.16, >= 7.2.0 <= 7.2.12, >= 7.0.0 <= 7.0.19, >= 7.0.0 < 7.0.20, >= 7.2.0 < 7.2.13, >= 7.0.0 < 7.0.17)에 포함되는지 확인합니다. OS를 선택하면 해당 OS의 제품·패키지·KB·APAR 확인 명령만 표시됩니다.
조치방안
Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
조치 후 확인사항
패치 후 같은 명령으로 전체 버전을 다시 확인해 Fortinet FortiOS, FortiProxy 7.0.20, 7.2.13, 7.0.17 기준을 충족하는지 확인합니다. 이어서 인증 우회 관련 오류·공격 흔적이 새로 발생하지 않는지 확인합니다.