CVE-2020-15936

A improper input validation in Fortinet FortiGate version 6.4.3 and below, version 6.2.5 and below, version 6.0.11 and below, version 5.6.13 and below allows attacker to disclose sensitive information via SNI Client Hello TLS packets.
References
Link Resource
https://fortiguard.com/advisory/FG-IR-20-091 Vendor Advisory
Configurations

Configuration 1

cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:*
cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:*
cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:*
cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:*

Information

Published : 2022-03-01 07:15

Updated : 2022-07-12 05:42


NVD link : CVE-2020-15936

Mitre link : CVE-2020-15936

Products Affected
No products.
CWE