Critical Fortinet Vulnerability CVE-2022-40684: IAB to Sell Access Appears?
SecurityAffairs — Researchers at Cyble are aware of an Initial Access Broker (IAB ) are likely to be selling access to corporate networks. In early October, Fortinet addressed the authentication bypass vulnerability CVE-2022-40684 affecting the FortiGate Firewall/FortiProxy Web Proxy. An attacker who successfully exploited this vulnerability could log into a vulnerable device, Fortinet said. As of this October, the Shadowserver Foundation has announced that over 17K Fortinet devices exposed online are vulnerable to attacks exploiting the vulnerability CVE-2022-40684, the majority of which are located in Germany and the United States. Now , Cyble researchers report that more than 100,000 Internet-accessible FortiGate firewalls, if still unpatched, could be targeted by threat actors.