We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2016-8495



Description

An improper certificate validation vulnerability in Fortinet FortiManager 5.0.6 through 5.2.7 and 5.4.0 through 5.4.1 allows remote attacker to spoof a trusted entity by using a man-in-the-middle (MITM) attack via the Fortisandbox devices probing feature.

Reserved 2016-10-07 | Published 2017-02-13 | Updated 2024-10-25 | Assigner fortinet

Problem types

Credentials exposure

Product status

5.0.6 to 5.2.7
affected

5.4.0 to 5.4.1
affected

References

www.securitytracker.com/id/1037805 (1037805) vdb-entry

fortiguard.com/advisory/FG-IR-16-055

www.securityfocus.com/bid/96157 (96157) vdb-entry

cve.org (CVE-2016-8495)

nvd.nist.gov (CVE-2016-8495)

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2016-8495

Support options

Helpdesk Chat, Email, Knowledgebase
Telegram Chat
Subscribe to our newsletter to learn more about our work.