CVE-2018-13382: Fortinet FortiOS and FortiProxy Improper Authorization
An Improper Authorization vulnerability in Fortinet FortiOS and FortiProxy under SSL VPN web portal allows an unauthenticated attacker to modify the password. Required action: Apply updates per vendor instructions.
CISA KEV ↗ · unattributed attribution