cbcvebase.
CVE-2020-12818
published 2020-09-24

CVE-2020-12818: An insufficient logging vulnerability in FortiGate before 6.4.1 may allow the traffic from an unauthenticated attacker to Fortinet owned IP addresses to go…

PriorityP429medium5.3CVSS 3.1
AVNACLPRNUINSUCLINAN
EPSS
0.90%
55.7th percentile
An insufficient logging vulnerability in FortiGate before 6.4.1 may allow the traffic from an unauthenticated attacker to Fortinet owned IP addresses to go unnoticed.

Affected

40 ranges· showing 25
VendorProductVersion rangeFixed in
fortinetfortigate
fortinetfortigate1000d
fortinetfortigate100e
fortinetfortigate100f
fortinetfortigate1100e
fortinetfortigate1500d
fortinetfortigate1800f
fortinetfortigate2000e
fortinetfortigate200e
fortinetfortigate2200e
fortinetfortigate3000d
fortinetfortigate3300e
fortinetfortigate3400e
fortinetfortigate3600e
fortinetfortigate3700d
fortinetfortigate3960e
fortinetfortigate3980e
fortinetfortigate400e
fortinetfortigate40f
fortinetfortigate4200f
fortinetfortigate5001d
fortinetfortigate5001e
fortinetfortigate5001e1
fortinetfortigate5053b
fortinetfortigate5060

CVSS provenance

nvdv3.15.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.