Back to search

CVE-2014-0351

MEDIUM
5.4NVD

The FortiManager protocol service in Fortinet FortiOS before 4.3.16 and 5.x before 5.0.8 on FortiGate devices does not prevent use of anonymous ciphersuites, which makes it easier for man-in-the-middle attackers to obtain sensitive information or interfere with communications by modifying the client-server data stream.

CVSS v2.0 Score

5.4
/ 10.0
MEDIUM
AV:A/AC:M/Au:N/C:P/I:P/A:P

Information

Published
10 sept. 2014
Updated
12 avr. 2025
Status
Deferred
Source
cret@cert.org

Affected products

Versions : 4.3.15, 4.3.10, 4.3.12, 4.3.13, 4.3.14

Weaknesses (CWE)

CWE-310

Similar CVEs

Other vulnerabilities of type CWE-310

Loading…

Monitor your products

Get automatic alerts for every new CVE affecting your equipment.

Enable monitoring