CVE-2019-15705: Fortinet FortiOS

High severity, CVSS 7.5. EPSS: 1.8% chance of exploitation in the next 30 days.

An Improper Input Validation vulnerability in the SSL VPN portal of FortiOS versions 6.2.1 and below, and 6.0.6 and below may allow an unauthenticated remote attacker to crash the SSL VPN service by sending a crafted POST request.

Affected products

  • Fortinet FortiOS: up to and including 6.0.6; from 6.2.0, up to and including 6.2.1

Published 2019-11-27. Last modified 2026-06-17.