⚠ Actively exploited in ransomware campaigns
This vulnerability is on the CISA Known Exploited Vulnerabilities list and has been used in known ransomware attacks. CISA required action: Apply updates per vendor instructions.. Due date: 2022-07-10.

CVE-2018-13383Out-of-bounds Write in Fortinet Fortios

Severity
6.5MEDIUMNVD
CNA4.3VulnCheck4.3
EPSS
1.3%
top 20.32%
CISA KEV
KEVRansomware
Added 2022-01-10
Due 2022-07-10
Exploit
Exploited in wild
Active exploitation observed
Timeline
PublishedMay 29
KEV addedJan 10
Latest updateMay 24
KEV dueJul 10
CISA Required Action: Apply updates per vendor instructions.

Description

A heap buffer overflow in Fortinet FortiOS 6.0.0 through 6.0.4, 5.6.0 through 5.6.10, 5.4.0 through 5.4.12, 5.2.14 and earlier and FortiProxy 2.0.0, 1.2.8 and earlier in the SSL VPN web portal may cause the SSL VPN web service termination for logged in users due to a failure to properly handle javascript href data when proxying webpages.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

Affected Packages3 packages

CVEListV5fortinet/fortinet_fortios_and_fortiproxyFortiOS 6.0.0 through 6.0.4, 5.6.0 through 5.6.10, 5.4.0 through 5.4.12, 5.2.14 and earlier, FortiProxy 2.0.0, 1.2.8 and earlier
NVDfortinet/fortios5.2.05.2.15+3
NVDfortinet/fortiproxy< 1.2.9+1

🔴Vulnerability Details

3
GHSA
GHSA-cjc8-2cq5-7jq7: A heap buffer overflow in Fortinet FortiOS all versions below 62022-05-24
CVEList
CVE-2018-13383: A heap buffer overflow in Fortinet FortiOS 62019-05-29
VulnCheck
Fortinet FortiOS and FortiProxy Out-of-bounds Write2018

🔍Detection Rules

1
Suricata
ET EXPLOIT FortiOS SSL VPN - Remote Code Execution (CVE-2018-13383)2019-08-14

📋Vendor Advisories

3
CISA
Fortinet FortiOS and FortiProxy Out-of-bounds Write2022-01-10
Fortinet
A heap buffer overflow in Fortinet FortiOS 6.0.0 through 6.0.4, 5.6.0 through 5.6.10, 5.4.0 through 5.4.12, 5.2.14 and e...2019-05-29
Fortinet
A heap buffer overflow in Fortinet FortiOS 6.0.0 through 6.0.4, 5.6.0 through 5.6.10, 5.4.0 through 5.4.12, 5.2.14 and e...2019-05-29

🕵️Threat Intelligence

3
Tenable
Hold the Door: Why Organizations Need to Prioritize Patching SSL VPNs2021-08-25
Fortinet
FortiOS and SSL Vulnerabilities2019-08-28
Tenable
CVE-2018-13379, CVE-2019-11510: FortiGate and Pulse Connect Secure Vulnerabilities Exploited In the Wild2019-08-27
CVE-2018-13383 — Out-of-bounds Write in Fortinet | cvebase