FG-IR-24-453: Log Pollution via login page
Published Apr 8, 2025
·Updated
An Improper Output Neutralization for Logs vulnerability [CWE-117] in FortiManager and FortiAnalyzer may allow an unauthenticated remote attacker to pollute the logs via crafted login requests.
Affected Software
8 affected componentsFixes available
Fortinet FortiAnalyzer>=7.6.0<=7.6.1
Fortinet FortiAnalyzer>=7.4.0<=7.4.5
Fortinet FortiAnalyzer>=7.2.0<=7.2.8
Fortinet FortiAnalyzer>=7.0.0<=7.0.13
Fortinet FortiManager>=7.6.0<=7.6.1
Fortinet FortiManager>=7.4.0<=7.4.5
Fortinet FortiManager>=7.2.0<=7.2.8
Fortinet FortiManager>=7.0.0<=7.0.13
Event History
Apr 8, 2025
Advisory Published
via FortiGuard·12:00 AM
Data Sourced
via FortiGuard·12:00 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of FG-IR-24-453?
The FG-IR-24-453 vulnerability is classified as critical due to its potential for log pollution by unauthenticated remote attackers.
2
How do I fix FG-IR-24-453?
To mitigate FG-IR-24-453, update FortiManager and FortiAnalyzer to the versions specified in the advisory.
3
What are the affected products in FG-IR-24-453?
FG-IR-24-453 affects multiple versions of FortiManager and FortiAnalyzer within specific version ranges.
4
Can FG-IR-24-453 be exploited remotely?
Yes, FG-IR-24-453 can be exploited by an unauthenticated remote attacker.
5
What consequences can result from FG-IR-24-453?
The exploitation of FG-IR-24-453 can lead to log manipulation, potentially impacting security visibility and incident response.