cbcvebase.
CVE-2016-8495
published 2017-02-13

CVE-2016-8495: An improper certificate validation vulnerability in Fortinet FortiManager 5.0.6 through 5.2.7 and 5.4.0 through 5.4.1 allows remote attacker to spoof a trusted…

high7.4CVSS 3.0
AVNACHPRNUINSUCHIHAN
An improper certificate validation vulnerability in Fortinet FortiManager 5.0.6 through 5.2.7 and 5.4.0 through 5.4.1 allows remote attacker to spoof a trusted entity by using a man-in-the-middle (MITM) attack via the Fortisandbox devices probing feature.

Affected

24 ranges
VendorProductVersion rangeFixed in
fortinetfortimanager
fortinetfortimanager
fortinetfortimanager
fortinetfortimanager_firmware
fortinetfortimanager_firmware
fortinetfortimanager_firmware
fortinetfortimanager_firmware
fortinetfortimanager_firmware
fortinetfortimanager_firmware
fortinetfortimanager_firmware
fortinetfortimanager_firmware
fortinetfortimanager_firmware
fortinetfortimanager_firmware
fortinetfortimanager_firmware
fortinetfortimanager_firmware
fortinetfortimanager_firmware
fortinetfortimanager_firmware
fortinetfortimanager_firmware
fortinetfortimanager_firmware
fortinetfortimanager_firmware
fortinetfortimanager_firmware
fortinetfortimanagerfirmware
fortinetfortinet
fortinetfortisandbox