CVE-2020-12818

MEDIUM

FortiOS < 6.4.1 - Unauthenticated Traffic Logging Bypass

Title source: llm
STIX 2.1

Description

An insufficient logging vulnerability in FortiGate before 6.4.1 may allow the traffic from an unauthenticated attacker to Fortinet owned IP addresses to go unnoticed.

References (2)

Core 2
Core References
Vendor Advisory x_refsource_confirm
https://fortiguard.com/advisory/FG-IR-20-033

Scores

CVSS v3 5.3
EPSS 0.0028
EPSS Percentile 51.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

Status published
Products (1)
fortinet/fortios < 6.4.1
Published Sep 24, 2020
Tracked Since Feb 18, 2026