New Stormshield SNS protection for CVE-2022-39952 (FortiNAC)

FortiNAC is a solution used for Network Access Control. Some of its version are vulnerable to a unauthenticated file injection, allowing to obtain a reverse shell.

The Stormshield Customer Security Lab team has deployed a SNS protection signature, to detect and block any exploitation of this vulnerability :

IDName
http:client.83Exploitation of a file injection vulnerability on FortiNAC appliance (CVE-2022-39952)