Exploited in the wild FortiGate network-edge F5 BIG-IP Fortinet rce
Thai Broadband Provider Hacked via Fortinet Vulnerability
CVE Tools coverage
Attackers breached Thai broadband provider 3BB by exploiting FortiGate SSL-VPN vulnerability CVE-2024-21762 after probing CVE-2018-13379, CVE-2022-42475, and CVE-2023-27997. They also investigated 3BB's F5 BIG-IP environment for CVE-2021-22986, CVE-2022-1388, and CVE-2023-46747, then used MeshCentral, Linux privilege-escalation tools, credential theft, web shells, and log cleanup to maintain access. The incident shows how exposed edge appliances can provide a path to persistent access across a provider's internal network.