Record summary

CVE-2018-13374 has a selected CVSS score of 4.3 (medium); EIP currently links 1 catalogued exploit and 1 repository PoC. CISA lists CVE-2018-13374 in KEV and reports its use in known ransomware campaigns.

Description

A Improper Access Control in Fortinet FortiOS 6.0.2, 5.6.7 and before, FortiADC 6.1.0, 6.0.0 to 6.0.1, 5.4.0 to 5.4.4 allows attacker to obtain the LDAP server login credentials configured in FortiGate via pointing a LDAP server connectivity test request to a rogue LDAP server instead of the configured one.

Description source: CVE List

Exploitation context

Known exploitation

CISA KEV
Listed · Sep 8, 2022 · CISA
VulnCheck KEV
Listed · Feb 16, 2021 · VulnCheck
Reported exploitation
Observed · VulnCheck
Ransomware use
Observed · CISA

Available material

Catalogued exploits
1
Repository PoCs
1

CISA SSVC decision

ExploitationActive
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Aug 31, 2022 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus
CISAVersion data not supplied
CVE ListFortiOS 6.0.2, 5.6.7 and before, FortiADC 6.1.0, 6.0.0 to 6.0.1, 5.4.0 to 5.4.4affected

Proofs of concept

2

Catalogued exploits

ExploitDBFortinet FortiGate FortiOS < 6.0.3 - LDAP Credential DisclosureExploitDB exploitby Julio UreñaNot analyzed1 file
ExploitDB

PoC details

Repository PoCs

GitHubJustjeff211/conti-ransomware-writeupRepository PoCby Justjeff211Stars: 0Not analyzed2 files

919.5 KiB · linked to 3 vulnerabilities

GitHub

PoC details

References

3