CVE-2019-15709: Fortinet Fortiap-S

Medium severity, CVSS 6.5. EPSS: 1.3% chance of exploitation in the next 30 days.

An improper input validation in FortiAP-S/W2 6.2.0 to 6.2.2, 6.0.5 and below, FortiAP-U 6.0.1 and below CLI admin console may allow unauthorized administrators to overwrite system files via specially crafted tcpdump commands in the CLI.

Affected products

  • Fortinet Fortiap-S: up to and including 6.0.5; from 6.2.0, up to and including 6.2.2
  • Fortinet Fortiap-U: up to and including 6.0.1
  • Fortinet Fortiap-w2: up to and including 6.0.5; from 6.2.0, up to and including 6.2.2

Published 2020-06-01. Last modified 2026-06-17.