QID 44092

Date Published: 2023-07-17

QID 44092: FortiOS-Dragonblood Vulnerabilities in WiFi WPA3 standard implementation (FG-IR-19-107)

Multiple vulnerabilities, referred to as Dragonblood, exist in WiFi WPA3 standard implementation impacting fortios

Affected Versions:
FortiOS 6.2.0 to 6.2.1

QID Detection Logic (Authenticated):
Detection checks for vulnerable version of FortiOS.

Note: Making this QID practice as this QID is only supported for Fortios product also banner based detection added

Successful exploit may impact confidentiality

  • CVSS V3 rated as Medium - 5.9 severity.
  • CVSS V2 rated as Medium - 4.3 severity.
  • Solution
    Fortinet has released patch addressing the vulnerability. For more information please refer to FG-IR-19-107
    Vendor References

    CVEs related to QID 44092

    Software Advisories
    Advisory ID Software Component Link
    FG-IR-19-107 URL Logo www.fortiguard.com/psirt/FG-IR-19-107