CVE-2024-54021: File-Filter Bypass in Explicit Web Proxy Policy
An Improper Neutralization of CRLF Sequences in HTTP Headers ('http response splitting') vulnerability [CWE-113] in Fortinet FortiOS 7.2.0 through 7.6.0, FortiProxy 7.2.0 through 7.4.5 may allow a remote unauthenticated attacker to bypass the file filter via crafted HTTP headers.
Other sources
An Improper Neutralization of CRLF Sequences in HTTP Headers ('http response splitting') vulnerability [CWE-113] in FortiOS, FortiProxy and FortiSASE may allow a remote unauthenticated attacker to bypass the file filter via crafted HTTP header.
— FortiGuard
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-54021?
CVE-2024-54021 is classified as a high severity vulnerability due to its potential to allow unauthorized code execution.
How do I fix CVE-2024-54021?
To remediate CVE-2024-54021, update FortiOS to version 7.6.1 or later, or FortiProxy to version 7.4.6 or later depending on your specific installation.
What systems are affected by CVE-2024-54021?
CVE-2024-54021 affects Fortinet FortiOS versions 7.2.0 through 7.6.0 and FortiProxy versions 7.2.0 through 7.4.5.
What does CVE-2024-54021 exploit involve?
CVE-2024-54021 exploits improper neutralization of CRLF sequences in HTTP headers, enabling HTTP response splitting.
Can CVE-2024-54021 lead to data breaches?
Yes, CVE-2024-54021 could potentially lead to data breaches by allowing attackers to execute unauthorized commands through crafted HTTP headers.