5.9

CVE-2016-7541

Long lived sessions in Fortinet FortiGate devices with FortiOS 5.x before 5.4.0 could violate a security policy during IPS signature updates when the FortiGate's IPSengine is configured in flow mode. All FortiGate versions with IPS configured in proxy mode (the default mode) are not affected.

Data is provided by the National Vulnerability Database (NVD)
FortinetFortios Version5.0.0
FortinetFortios Version5.0.1
FortinetFortios Version5.0.2
FortinetFortios Version5.0.3
FortinetFortios Version5.0.4
FortinetFortios Version5.0.5
FortinetFortios Version5.0.6
FortinetFortios Version5.0.7
FortinetFortios Version5.0.8
FortinetFortios Version5.0.9
FortinetFortios Version5.0.10
FortinetFortios Version5.0.11
FortinetFortios Version5.0.12
FortinetFortios Version5.0.13
FortinetFortios Version5.0.14
FortinetFortios Version5.2.0
FortinetFortios Version5.2.1
FortinetFortios Version5.2.2
FortinetFortios Version5.2.3
FortinetFortios Version5.2.4
FortinetFortios Version5.2.5
FortinetFortios Version5.2.6
FortinetFortios Version5.2.7
FortinetFortios Version5.2.8
FortinetFortios Version5.2.9
FortinetFortios Version5.2.10
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.23% 0.426
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.9 2.2 3.6
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:P/A:N