보안뉴스 아카이브
긴급도 80/100 심각도 미평가 · 미평가 악용확률 98.5% CISA KEV · 2022-09-08 랜섬웨어 악용

CVE-2018-13374

CISA 기관 조치 기한: 2022-09-29

Fortinet FortiOS and FortiADC

Fortinet FortiOS and FortiADC contain an improper access control vulnerability that allows attackers to obtain the LDAP server login credentials configured in FortiGate by pointing a LDAP server connectivity test request to a rogue LDAP server.
KEV 필수 조치: Apply updates per vendor instructions.
공개 익스플로잇 / PoC

NVD 상세 ↗   참고 링크 ↗

← 취약점 목록