VYPR
High severity7.5NVD Advisory· Published Nov 27, 2019· Updated Jun 17, 2026

CVE-2019-15705

CVE-2019-15705

Description

An Improper Input Validation vulnerability in the SSL VPN portal of FortiOS versions 6.2.1 and below, and 6.0.6 and below may allow an unauthenticated remote attacker to crash the SSL VPN service by sending a crafted POST request.

Affected products

3
  • Fortinet/Fortios2 versions
    cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:*range: <=6.0.6
    • (no CPE)range: <=6.2.1, <=6.0.6
  • Range: FortiOS versions 6.2.1 and below

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.