← Ana sayfa

CVE-2018-13374

Fortinet FortiOS and FortiADC Improper Access Control Vulnerability

Severity: YüksekCVSS: -EPSS: -CISA KEVExploit Mevcut

Açıklama

Fortinet FortiOS and FortiADC contain an improper access control vulnerability that allows attackers to obtain the LDAP server login credentials configured in FortiGate by pointing a LDAP server connectivity test request to a rogue LDAP server. Required action: Apply updates per vendor instructions.

Etkilenen Ürün

Vendor: Fortinet · Product: FortiOS and FortiADC

Etkilenen sürümler: -

KOBALT VMS Çözüm Önerisi

Bu zafiyet müşteriye ait asset, agent, connector ve attack surface verileriyle eşleşiyorsa önceliklendirilmiş aksiyon planına alınmalıdır.