An authentication bypass using an alternate path or channel [CWE-288] in Fortinet FortiOS version 7.2.0 through 7.2.1 and 7.0.0 through 7.0.6, FortiProxy version 7.2.0 and version 7.0.0 through 7.0.6 and FortiSwitchManager version 7.2.0 and 7.0.0 allows an unauthenticated atttacker to perform operations on the administrative interface via specially crafted HTTP or HTTPS requests.
Published: 2022-10-07
Fortinet has patched a critical authentication bypass in its FortiOS and FortiProxy products that could lead to administrator access.
https://thehackernews.com/2026/06/new-sharkloader-malware-deploys-cobalt.html
https://securelist.com/strikeshark-campaign/120326/
https://www.securityweek.com/are-threat-groups-belsen-and-zerosevengroup-related/
https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-215a
https://www.tenable.com/cyber-exposure/tenable-2022-threat-landscape-report
https://www.horizon3.ai/attack-research/attack-blogs/fortinet-iocs-cve-2022-40684/
https://www.tenable.com/blog/aa23-215a-2022s-top-routinely-exploited-vulnerabilities
https://www.tenable.com/blog/cve-2022-40684-critical-authentication-bypass-in-fortios-and-fortiproxy
https://github.com/belky-me/vamp-cve-oracle
https://github.com/belky-me/vamp-forticheck
https://github.com/ericrihm/edge-security-ground-truth
https://github.com/exploitintel/eip-search
https://github.com/1337or420/FortiGate-FortiWeb-Multi-Exploit-Extractor
https://github.com/pintukumar-sutradhar/fortigate-cve-2022-40684-tool
https://github.com/Yami0x777/Belsen_Group-et-exploitation-de-la-CVE-2022-40684
https://github.com/niklasmato/fortileak-01-2025-Be
https://github.com/XalfiE/Fortigate-Belsen-Leak-Dump-CVE-2022-40684-
https://github.com/AKboss1221/fortigate-belsen-leak
https://github.com/Rofell0s/Fortigate-Leak-CVE-2022-40684
https://github.com/arsolutioner/fortigate-belsen-leak
https://github.com/gustavorobertux/gotigate
https://github.com/Bendalledj/CVE-2022-40684
https://github.com/und3sc0n0c1d0/CVE-2022-40684
https://github.com/Grapphy/fortipwn
https://github.com/mohamedbenchikh/CVE-2022-40684
https://github.com/mohamedbenchikh/FortiPWN
https://github.com/ClickCyber/cve-2022-40684
https://github.com/Carl0sV1e1ra/CVE-2022-40684
https://github.com/Z4r4s/CVE-2022-40684-RCE-POC
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2022-40684
https://fortiguard.com/psirt/FG-IR-22-377
http://packetstormsecurity.com/files/171515/Fortinet-7.2.1-Authentication-Bypass.html