PT-2019-2799 · Fortinet · Fortios+1

Published

2019-05-24

·

Updated

2025-10-24

·

CVE-2018-13382

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions FortiOS versions 5.4.1 through 5.4.10 FortiOS versions 5.6.0 through 5.6.8 FortiOS versions 6.0.0 through 6.0.4 FortiProxy versions 1.0.0 through 1.0.7 FortiProxy versions 1.1.0 through 1.1.6 FortiProxy versions 1.2.0 through 1.2.8 FortiProxy version 2.0.0
Description The issue is related to improper authorization in the SSL VPN web portal of FortiOS, allowing an unauthenticated attacker to modify the password of an SSL VPN web portal user via specially crafted HTTP requests. This can be done by exploiting errors in the authorization mechanism on the web portal.
Recommendations For FortiOS versions 5.4.1 through 5.4.10, update to a version that includes the fix for this issue. For FortiOS versions 5.6.0 through 5.6.8, update to a version that includes the fix for this issue. For FortiOS versions 6.0.0 through 6.0.4, update to a version that includes the fix for this issue. For FortiProxy versions 1.0.0 through 1.0.7, update to a version that includes the fix for this issue. For FortiProxy versions 1.1.0 through 1.1.6, update to a version that includes the fix for this issue. For FortiProxy versions 1.2.0 through 1.2.8, update to a version that includes the fix for this issue. For FortiProxy version 2.0.0, update to a version that includes the fix for this issue. As a temporary workaround, consider restricting access to the SSL VPN web portal to minimize the risk of exploitation.

Exploit

Fix

Improper Authorization

Incorrect Authorization

Weakness Enumeration

Related Identifiers

BDU:2019-02752
CVE-2018-13382

Affected Products

Fortios
Fortiproxy