Cybersecurity Forum

This forum is for all security enthusiasts to discuss Fortinet's latest & evolving technologies and to connect & network with peers in the cybersecurity hemisphere. Share and learn on a broad range of topics like best practices, use cases, integrations and more. For support specific questions/resources, please visit the Support Forum or the Knowledge Base.

BrenHuan
New Contributor

Exploit on sslvpn_websession file (CVE-2018-13379 - FortiOS system file leak through SSL VPN via specially crafted HTTP resource requests)

Dear all,

With reference to the exploit below: Fortiguard
FortiGuard remove preview
Fortiguard
FortiOS system file leak through SSL VPN via specially crafted HTTP resource requests A path traversal vulnerability in the FortiOS SSL VPN web portal may allow an unauthenticated attacker to download FortiOS system files through specially crafted HTTP resource requests.
View this on FortiGuard >

Does anyone know if the sslvpn_websession file that holds the credentials is being updated upon every user VPN login or does it get updated only on a periodic basis (e.g. every few days or months)? 

Thank you.
1 REPLY 1
sahmed_FTNT
Staff
Staff

Hello, kindly see the below details :

 

 

https://www.fortinet.com/blog/psirt-blogs/update-regarding-cve-2018-13379

Security all we want
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.