5.3
CVSSv3

CVE-2022-22306

Published: 24/05/2022 Updated: 06/06/2022
CVSS v2 Base Score: 2.9 | Impact Score: 2.9 | Exploitability Score: 5.5
CVSS v3 Base Score: 5.3 | Impact Score: 3.6 | Exploitability Score: 1.6
VMScore: 259
Vector: AV:A/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

An improper certificate validation vulnerability [CWE-295] in FortiOS 6.0.0 up to and including 6.0.14, 6.2.0 up to and including 6.2.10, 6.4.0 up to and including 6.4.8, 7.0.0 may allow a network adjacent and unauthenticated malicious user to man-in-the-middle the communication between the FortiGate and some peers such as private SDNs and external cloud platforms.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

fortinet fortios 7.0.0

fortinet fortios