{"api_version":"1","generated_at":"2026-07-23T07:36:28+00:00","cve":"CVE-2015-5965","urls":{"html":"https://cve.report/CVE-2015-5965","api":"https://cve.report/api/cve/CVE-2015-5965.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2015-5965","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2015-5965"},"summary":{"title":"CVE-2015-5965","description":"The SSL-VPN feature in Fortinet FortiOS before 4.3.13 only checks the first byte of the TLS MAC in finished messages, which makes it easier for remote attackers to spoof encrypted content via a crafted MAC field.","state":"PUBLISHED","assigner":"mitre","published_at":"2015-08-11 14:59:16","updated_at":"2026-05-06 22:30:45"},"problem_types":["CWE-20","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"5","severity":"","vector":"AV:N/AC:L/Au:N/C:N/I:P/A:N","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"}}],"references":[{"url":"http://www.securityfocus.com/bid/76065","name":"http://www.securityfocus.com/bid/76065","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Fortinet FortiOS SSL-VPN Man in The Middle Security Bypass Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.securitytracker.com/id/1033256","name":"http://www.securitytracker.com/id/1033256","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Fortinet FortiGate/FortiOS MAC Authentication Flaw Lets Remote Users Modify Data on the Target System - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.fortiguard.com/advisory/FG-IR-15-016/","name":"http://www.fortiguard.com/advisory/FG-IR-15-016/","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"FortiGuard","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://security.gentoo.org/glsa/201508-01","name":"https://security.gentoo.org/glsa/201508-01","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Gentoo Security","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://vivaldi.net/en-US/blogs/entry/the-poodle-has-friends","name":"https://vivaldi.net/en-US/blogs/entry/the-poodle-has-friends","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Vivaldi Web Browser Community - 404 - Not Found","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2015-5965","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2015-5965","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2015","cve_id":"5965","vulnerable":"1","versionEndIncluding":"4.3.12","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"fortinet","cpe5":"fortios","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-06T07:06:34.996Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"76065","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/76065"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.fortiguard.com/advisory/FG-IR-15-016/"},{"name":"1033256","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://www.securitytracker.com/id/1033256"},{"name":"GLSA-201508-01","tags":["vendor-advisory","x_refsource_GENTOO","x_transferred"],"url":"https://security.gentoo.org/glsa/201508-01"},{"tags":["x_refsource_MISC","x_transferred"],"url":"https://vivaldi.net/en-US/blogs/entry/the-poodle-has-friends"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2015-07-15T00:00:00.000Z","descriptions":[{"lang":"en","value":"The SSL-VPN feature in Fortinet FortiOS before 4.3.13 only checks the first byte of the TLS MAC in finished messages, which makes it easier for remote attackers to spoof encrypted content via a crafted MAC field."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2016-12-22T18:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"76065","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/76065"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.fortiguard.com/advisory/FG-IR-15-016/"},{"name":"1033256","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://www.securitytracker.com/id/1033256"},{"name":"GLSA-201508-01","tags":["vendor-advisory","x_refsource_GENTOO"],"url":"https://security.gentoo.org/glsa/201508-01"},{"tags":["x_refsource_MISC"],"url":"https://vivaldi.net/en-US/blogs/entry/the-poodle-has-friends"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2015-5965","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"The SSL-VPN feature in Fortinet FortiOS before 4.3.13 only checks the first byte of the TLS MAC in finished messages, which makes it easier for remote attackers to spoof encrypted content via a crafted MAC field."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"76065","refsource":"BID","url":"http://www.securityfocus.com/bid/76065"},{"name":"http://www.fortiguard.com/advisory/FG-IR-15-016/","refsource":"CONFIRM","url":"http://www.fortiguard.com/advisory/FG-IR-15-016/"},{"name":"1033256","refsource":"SECTRACK","url":"http://www.securitytracker.com/id/1033256"},{"name":"GLSA-201508-01","refsource":"GENTOO","url":"https://security.gentoo.org/glsa/201508-01"},{"name":"https://vivaldi.net/en-US/blogs/entry/the-poodle-has-friends","refsource":"MISC","url":"https://vivaldi.net/en-US/blogs/entry/the-poodle-has-friends"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2015-5965","datePublished":"2015-08-11T14:00:00.000Z","dateReserved":"2015-08-11T00:00:00.000Z","dateUpdated":"2024-08-06T07:06:34.996Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2015-08-11 14:59:16","lastModifiedDate":"2026-05-06 22:30:45","problem_types":["CWE-20","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:*","versionEndIncluding":"4.3.12","matchCriteriaId":"F4A9AD38-4005-4B33-AB47-5E81F9AB5E32"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2015","CveId":"5965","Ordinal":"1","Title":"CVE-2015-5965","CVE":"CVE-2015-5965","Year":"2015"},"notes":[{"CveYear":"2015","CveId":"5965","Ordinal":"1","NoteData":"The SSL-VPN feature in Fortinet FortiOS before 4.3.13 only checks the first byte of the TLS MAC in finished messages, which makes it easier for remote attackers to spoof encrypted content via a crafted MAC field.","Type":"Description","Title":"CVE-2015-5965"},{"CveYear":"2015","CveId":"5965","Ordinal":"2","NoteData":"2015-08-11","Type":"Other","Title":"Published"},{"CveYear":"2015","CveId":"5965","Ordinal":"3","NoteData":"2016-12-22","Type":"Other","Title":"Modified"}]}}}