CVE-2018-13378: Fortinet Fortisiem

High severity, CVSS 7.2. EPSS: 1.3% chance of exploitation in the next 30 days.

An information disclosure vulnerability in Fortinet FortiSIEM 5.2.0 and below versions exposes the LDAP server plaintext password via the HTML source code.

Affected products

  • Fortinet Fortisiem: up to and including 5.2.0

Published 2019-04-17. Last modified 2026-06-17.