Skip to main content

FortiOS and FortiADC vulnerabilities

1 published alerts for Fortinet FortiOS and FortiADC.

Actively exploited (KEV)Ransomware

CVE-2018-13374

Fortinet FortiOS and FortiADC Improper Access Control Vulnerability

Fortinet FortiOS and FortiADC is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2018-13374). Fortinet FortiOS and FortiADC contain an improper access control vulnerability that allows attackers to obtain the LDAP server login credentials configured in FortiGate by pointing a LDAP server connectivity test request to a rogue LDAP server. CISA remediation due date: 2022-09-29. If you need help checking exposure, call (864) 335-9223.