Dears
Appreciate your support to advise with the needed co to solve below issues:
| High | 121010 | TLS Version 1.1 Protocol Detection |
| High | 17367 | Fortinet FortiGate Web Console Management Detection |
| Medium | 157288 | TLS Version 1.1 Deprecated Protocol |
| Medium | 187315 | SSH Terrapin Prefix Truncation Weakness (CVE-2023-48795) |
| Medium | 51192 | SSL Certificate Cannot Be Trusted |
| Medium | 57582 | SSL Self-Signed Certificate |
| Low | 153953 | SSH Weak Key Exchange Algorithms Enabled |
| Low | 10114 | ICMP Timestamp Request Remote Date Disclosure |
Solved! Go to Solution.
FortiOS 5.4 has been End of Support for a long time now. I highly suggest upgrading to the more recent FortiOS versions like 7.2.11/12, 7.4.8, 7.6.4 and run the scan again.
Upon upgrading to the newer versions, you can use features like ACME to generate a 3rd party signed certificate to use it for Administrative Access so that the 'Self-Signed certificate' warning won't come up on your vulnerability scan.
what version of FortiOS are you using?
The following instance of FortiOS Web Interface was detected on the remote host :
Version : >= 5.4
Can you provide a precise firmware version?
5.4 was initially released in 2016, and anything below version 7.0 is essentially out of support by now (with 7.0 itself being out of support end of September) so if you are on any version between 5.4 and 7.0, I would recommend an upgrade to a supported version and then re-running the scan.
Cheers,
Debbie
FortiOS 5.4 has been End of Support for a long time now. I highly suggest upgrading to the more recent FortiOS versions like 7.2.11/12, 7.4.8, 7.6.4 and run the scan again.
Upon upgrading to the newer versions, you can use features like ACME to generate a 3rd party signed certificate to use it for Administrative Access so that the 'Self-Signed certificate' warning won't come up on your vulnerability scan.
Thanks all for your support
| User | Count |
|---|---|
| 2691 | |
| 1412 | |
| 810 | |
| 711 | |
| 455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.