CVE-2018-13382
Summary
| CVE | CVE-2018-13382 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-06-04 21:29:00 UTC |
| Updated | 2021-06-03 11:15:00 UTC |
| Description | An Improper Authorization vulnerability in Fortinet FortiOS 6.0.0 to 6.0.4, 5.6.0 to 5.6.8 and 5.4.1 to 5.4.10 and FortiProxy 2.0.0, 1.2.0 to 1.2.8, 1.1.0 to 1.1.6, 1.0.0 to 1.0.7 under SSL VPN web portal allows an unauthenticated attacker to modify the password of an SSL VPN web portal user via specially crafted HTTP requests |
Risk And Classification
EPSS: 0.816910000 probability, percentile 0.996070000 (date 2026-07-21)
CISA KEV: Listed on 2022-01-10; due 2022-07-10; ransomware use Known
Problem Types: CWE-285
CISA Known Exploited Vulnerability
| Vendor | Fortinet |
|---|---|
| Product | FortiOS and FortiProxy |
| Name | Fortinet FortiOS and FortiProxy Improper Authorization |
| Required Action | Apply updates per vendor instructions. |
| Notes | https://nvd.nist.gov/vuln/detail/CVE-2018-13382 |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Fortinet FortiOS CVE-2018-13382 Authorization Bypass Vulnerability | BID | www.securityfocus.com | |
| Unauthenticated SSL VPN users password modification | FortiGuard | CONFIRM | fortiguard.com | Mitigation, Vendor Advisory |
| Attacking SSL VPN - Part 2: Breaking the Fortigate SSL VPN | DEVCORE | MISC | devco.re | |
| Fortinet FortiOS 6.0.4 Password Modification ≈ Packet Storm | MISC | packetstormsecurity.com | |
| FortiProxy - Unauthenticated SSL VPN users password modification | FortiGuard | CONFIRM | www.fortiguard.com | |
| i.blackhat.com/USA-19/Wednesday/us-19-Tsai-Infiltrating-Corporate-Intranet-L... | MISC | i.blackhat.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
| CISA Known Exploited Vulnerabilities catalog | CISA | www.cisa.gov | kev |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.