Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Exploit on sslvpn_websession file (CVE-2018-13379 - FortiOS system file leak through SSL VPN via specially crafted HTTP resource requests)
Dear all,
With reference to the exploit below: Fortiguard
Does anyone know if the sslvpn_websession file that holds the credentials is being updated upon every user VPN login or does it get updated only on a periodic basis (e.g. every few days or months)?
Thank you.
With reference to the exploit below: Fortiguard
FortiGuard | remove preview | ||||||
|
Does anyone know if the sslvpn_websession file that holds the credentials is being updated upon every user VPN login or does it get updated only on a periodic basis (e.g. every few days or months)?
Thank you.
Labels:
- Labels:
-
vpn
1 REPLY 1
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello, kindly see the below details :
https://www.fortinet.com/blog/psirt-blogs/update-regarding-cve-2018-13379
Security all we want
