PT-2019-4120 · Fortinet · Fortios

Published

2019-07-26

·

Updated

2025-10-01

·

CVE-2019-5591

CVSS v3.1

6.5

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions FortiOS (affected versions not specified)
Description A default configuration issue in FortiOS may allow an unauthenticated attacker on the same subnet to intercept sensitive information by impersonating the LDAP server. The issue relates to authorization errors.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Insufficient Verification of Data Authenticity

Missing Authentication

Improper Authorization

Weakness Enumeration

Related Identifiers

BDU:2019-04699
CVE-2019-5591

Affected Products

Fortios