CVE-2022-40684

CRITICAL KEV RANSOMWARE NUCLEI

Fortinet Fortiproxy < 7.0.7 - Authentication Bypass

Title source: rule

Description

An authentication bypass using an alternate path or channel [CWE-288] in Fortinet FortiOS version 7.2.0 through 7.2.1 and 7.0.0 through 7.0.6, FortiProxy version 7.2.0 and version 7.0.0 through 7.0.6 and FortiSwitchManager version 7.2.0 and 7.0.0 allows an unauthenticated atttacker to perform operations on the administrative interface via specially crafted HTTP or HTTPS requests.

Exploits (33)

exploitdb WORKING POC
by ub3rsick · pythonremotewindows
https://www.exploit-db.com/exploits/52239
exploitdb WORKING POC
by Felipe Alcantara · bashwebappsmultiple
https://www.exploit-db.com/exploits/51092
nomisec WORKING POC 355 stars
by horizon3ai · remote
https://github.com/horizon3ai/CVE-2022-40684
nomisec WORKING POC 87 stars
by carlosevieira · remote
https://github.com/carlosevieira/CVE-2022-40684
nomisec WRITEUP 86 stars
by arsolutioner · poc
https://github.com/arsolutioner/fortigate-belsen-leak
nomisec WORKING POC 16 stars
by Filiplain · remote
https://github.com/Filiplain/Fortinet-PoC-Auth-Bypass
nomisec WORKING POC 15 stars
by kljunowsky · remote
https://github.com/kljunowsky/CVE-2022-40684-POC
nomisec WORKING POC 14 stars
by TaroballzChen · remote
https://github.com/TaroballzChen/CVE-2022-40684-metasploit-scanner
nomisec WORKING POC 11 stars
by hughink · remote
https://github.com/hughink/CVE-2022-40684
nomisec WORKING POC 9 stars
by qingsiweisan · remote
https://github.com/qingsiweisan/CVE-2022-40684
nomisec WORKING POC 6 stars
by Chocapikk · remote
https://github.com/Chocapikk/CVE-2022-40684
nomisec WORKING POC 5 stars
by z-bool · remote
https://github.com/z-bool/CVE-2022-40684
nomisec WORKING POC 5 stars
by secunnix · remote
https://github.com/secunnix/CVE-2022-40684
nomisec WORKING POC 4 stars
by und3sc0n0c1d0 · infoleak
https://github.com/und3sc0n0c1d0/CVE-2022-40684
nomisec WORKING POC 4 stars
by xtwip · poc
https://github.com/xtwip/fortipwn
nomisec WORKING POC 2 stars
by gustavorobertux · remote
https://github.com/gustavorobertux/gotigate
nomisec WORKING POC 2 stars
by jsongmax · remote
https://github.com/jsongmax/Fortinet-CVE-2022-40684
nomisec WORKING POC 2 stars
by HAWA771 · remote
https://github.com/HAWA771/CVE-2022-40684
nomisec WRITEUP 1 stars
by XalfiE · poc
https://github.com/XalfiE/Fortigate-Belsen-Leak-Dump-CVE-2022-40684-
nomisec WORKING POC 1 stars
by iveresk · remote
https://github.com/iveresk/CVE-2022-40684
nomisec WORKING POC 1 stars
by NeriaBasha · remote
https://github.com/NeriaBasha/CVE-2022-40684
nomisec WORKING POC
by pintukumar-sutradhar · remote
https://github.com/pintukumar-sutradhar/fortigate-cve-2022-40684-tool
nomisec WORKING POC
by ccordeiro · poc
https://github.com/ccordeiro/CVE-2022-40684
nomisec SCANNER
by Yami0x777 · poc
https://github.com/Yami0x777/Belsen_Group-et-exploitation-de-la-CVE-2022-40684
nomisec NO CODE
by niklasmato · poc
https://github.com/niklasmato/fortileak-01-2025-Be
nomisec WORKING POC
by Anthony1500 · remote
https://github.com/Anthony1500/CVE-2022-40684
nomisec WORKING POC
by notareaperbutDR34P3r · remote
https://github.com/notareaperbutDR34P3r/CVE-2022-40684-Rust
nomisec WORKING POC
by puckiestyle · remote
https://github.com/puckiestyle/CVE-2022-40684
nomisec WORKING POC
by dkstar11q · poc
https://github.com/dkstar11q/CVE-2022-40684
nomisec WORKING POC
by ClickCyber · remote
https://github.com/ClickCyber/cve-2022-40684
nomisec NO CODE
by mhd108 · poc
https://github.com/mhd108/CVE-2022-40684
metasploit WORKING POC EXCELLENT
by Heyder Andrade <@HeyderAndrade>, Zach Hanley <@hacks_zach> · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/http/fortinet_authentication_bypass_cve_2022_40684.rb

Nuclei Templates (1)

Fortinet - Authentication Bypass
CRITICALby Shockwave,nagli,carlosvieira

Scores

CVSS v3 9.8
EPSS 0.9443
EPSS Percentile 100.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CISA KEV 2022-10-11
VulnCheck KEV 2022-10-10
InTheWild.io 2022-10-10
ENISA EUVD EUVD-2022-43955
Ransomware Use Confirmed
CWE
CWE-287
Status published
Products (5)
fortinet/fortios 7.0.0 - 7.0.7
fortinet/fortiproxy 7.2.0
fortinet/fortiproxy 7.0.0 - 7.0.7
fortinet/fortiswitchmanager 7.0.0
fortinet/fortiswitchmanager 7.2.0
Published Oct 18, 2022
KEV Added Oct 11, 2022
Tracked Since Feb 18, 2026