CVE-2018-13371: Fortinet FortiOS

High severity, CVSS 8.8. EPSS: 1.3% chance of exploitation in the next 30 days.

An external control of system vulnerability in FortiOS may allow an authenticated, regular user to change the routing settings of the device via connecting to the ZebOS component.

Affected products

  • Fortinet FortiOS: up to and including 5.4.10; from 5.6.0, up to and including 5.6.7; from 6.0.0, up to and including 6.0.2

Published 2020-04-02. Last modified 2026-06-17.