Zero-Day | RCE: The OS command-injection bug, in the web application firewall (WAF) platform known as FortiWeb, will get a patch at the end of the month.
https://threatpost.com/unpatched-fortinet-bug-firewall-takeovers/168764/
https://threatpost.com/unpatched-fortinet-bug-firewall-takeovers/168764/
Threat Post
Unpatched Fortinet Bug Allows Firewall Takeovers
The OS command-injection bug, in the web application firewall (WAF) platform known as FortiWeb, will get a patch at the end of the month.
Zoom RCE from Pwn2Own 2021 writeup https://t.co/HWERqRCNaV
Sector 7
Zoom RCE from Pwn2Own 2021
On April 7 2021, Thijs Alkemade and Daan Keuper demonstrated a zero-click remote code execution exploit in the Zoom video client during Pwn2Own 2021. Now that related bugs have been fixed for all users (see ZDI-21-971 and ZSB-22003) we can safely detail the…