An information disclosure vulnerability in Fortinet FortiOS 6.0.1, 5.6.7 and below allows attacker to reveals serial number of FortiGate via hostname field defined in connection control setup packets of PPTP protocol.
2019-04-09T17:29:00.223
2024-11-21T03:46:58.203
Modified
CVSSv3.0: 5.3 (MEDIUM)
AV:N/AC:L/Au:N/C:P/I:N/A:N
10.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | fortinet | fortios | ≤ 5.6.7 | Yes |
Operating System | fortinet | fortios | 6.0.0 | Yes |
Operating System | fortinet | fortios | 6.0.1 | Yes |