CVE-2016-8495
published 2017-02-13CVE-2016-8495: An improper certificate validation vulnerability in Fortinet FortiManager 5.0.6 through 5.2.7 and 5.4.0 through 5.4.1 allows remote attacker to spoof a trusted…
high7.4CVSS 3.0
AVNACHPRNUINSUCHIHAN
An improper certificate validation vulnerability in Fortinet FortiManager 5.0.6 through 5.2.7 and 5.4.0 through 5.4.1 allows remote attacker to spoof a trusted entity by using a man-in-the-middle (MITM) attack via the Fortisandbox devices probing feature.
Affected
24 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fortinet | fortimanager | — | — |
| fortinet | fortimanager | — | — |
| fortinet | fortimanager | — | — |
| fortinet | fortimanager_firmware | — | — |
| fortinet | fortimanager_firmware | — | — |
| fortinet | fortimanager_firmware | — | — |
| fortinet | fortimanager_firmware | — | — |
| fortinet | fortimanager_firmware | — | — |
| fortinet | fortimanager_firmware | — | — |
| fortinet | fortimanager_firmware | — | — |
| fortinet | fortimanager_firmware | — | — |
| fortinet | fortimanager_firmware | — | — |
| fortinet | fortimanager_firmware | — | — |
| fortinet | fortimanager_firmware | — | — |
| fortinet | fortimanager_firmware | — | — |
| fortinet | fortimanager_firmware | — | — |
| fortinet | fortimanager_firmware | — | — |
| fortinet | fortimanager_firmware | — | — |
| fortinet | fortimanager_firmware | — | — |
| fortinet | fortimanager_firmware | — | — |
| fortinet | fortimanager_firmware | — | — |
| fortinet | fortimanagerfirmware | — | — |
| fortinet | fortinet | — | — |
| fortinet | fortisandbox | — | — |