cvelist/2018/13xxx/CVE-2018-13366.json

65 lines
2.0 KiB
JSON
Raw Normal View History

2018-07-06 10:04:23 -04:00
{
2019-04-09 17:00:41 +00:00
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
2019-03-18 02:04:12 +00:00
"CVE_data_meta": {
"ID": "CVE-2018-13366",
2019-04-09 17:00:41 +00:00
"ASSIGNER": "psirt@fortinet.com",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "Fortinet",
"product": {
"product_data": [
{
"product_name": "Fortinet FortiOS",
"version": {
"version_data": [
{
"version_value": "6.0.1"
},
{
"version_value": "5.6.7 and below"
}
]
}
}
]
}
}
]
}
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "Information disclosure"
}
]
}
]
},
"references": {
"reference_data": [
{
"refsource": "CONFIRM",
"name": "https://fortiguard.com/advisory/FG-IR-18-101",
"url": "https://fortiguard.com/advisory/FG-IR-18-101"
}
]
2019-03-18 02:04:12 +00:00
},
"description": {
"description_data": [
{
"lang": "eng",
2019-04-09 17:00:41 +00:00
"value": "An information disclosure vulnerability in Fortinet FortiOS 6.0.1, 5.6.7 and below allows attacker to reveals serial number of FortiGate via hostname field defined in connection control setup packets of PPTP protocol."
2019-03-18 02:04:12 +00:00
}
]
}
}