CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.4. It affects FortiOS.
CVE
CVE-2015-2323
Severity
MEDIUM
CVSS
6.4
EPSS
1.45%
FortiOS
Original NVD Description
FortiOS 5.0.x before 5.0.12 and 5.2.x before 5.2.4 supports anonymous, export, RC4, and possibly other weak ciphers when using TLS to connect to FortiGuard servers, which allows man-in-the-middle attackers to spoof TLS content by modifying packets.