CVE-2018-13366: Fortinet FortiOS
Medium severity, CVSS 5.3. EPSS: 0.9% chance of exploitation in the next 30 days.
An information disclosure vulnerability in Fortinet FortiOS 6.0.1, 5.6.7 and below allows attacker to reveals serial number of FortiGate via hostname field defined in connection control setup packets of PPTP protocol.
Affected products
- Fortinet FortiOS: up to and including 5.6.7; version 6.0.0 only; version 6.0.1 only
Published 2019-04-09. Last modified 2026-06-17.