Description |
Apache OFBiz is an enterprise resource planning system which contains a suite of tools for business to manage their various business operations.
CVE-2024-36104 is a path traversal vulnerability which allows endpoints to be exposed to unauthenticated users leading to RCE. CVE-2024-38856 is a pre-authentication RCE vulnerability which allows attackers to send specially crafted request to perform RCE without path traversal.
The following Apache OFBiz version are affected:
|
||||||
CVE ID |
CVE-2024-36104 (https://nvd.nist.gov/vuln/detail/CVE-2024-36104) CVE-2024-38856 (https://nvd.nist.gov/vuln/detail/CVE-2024-38856) |
||||||
NDR Cloud Detection Rule |
FortiNDR Cloud v2024.8+
|
||||||
Playbook | N/A | ||||||
Threat Hunting | N/A | ||||||
Suricata Coverage |
Customers can create custom investigation/detections using the Suricata signatures below 2053485 -> ET WEB_SPECIFIC_APPS Apache OFBiz Directory Traversal Remote Code Execution Attempt (CVE-2024-36104) |
||||||
Other Fortinet Product |
For more details regarding mitigating the vulnerability by utilizing Fortinet products, please refer to |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.