Fortinet says attackers are exploiting a FortiMail vulnerability that permits unauthenticated arbitrary file writes through crafted HTTP requests. Organizations should follow Fortinet remediation guidance immediately, limit administrative exposure, and investigate appliance logs and filesystem changes for evidence of attempted exploitation.
Source: The Hacker News
This report is based on the cited source. Organizations should consult vendor guidance and their own telemetry before acting.
