AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-9194

MEDIUM · CVSS 5.9 EPSS 1.13%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-09-05 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.9. It affects Fortinet, FortiOS.

CVE
CVE-2018-9194
Severity
MEDIUM
CVSS
5.9
EPSS
1.13%
Fortinet FortiOS

Original NVD Description

A plaintext recovery of encrypted messages or a Man-in-the-middle (MiTM) attack on RSA PKCS #1 v1.5 encryption may be possible without knowledge of the server's private key. Fortinet FortiOS 5.4.6 to 5.4.9, 6.0.0 and 6.0.1 are vulnerable by such attack under VIP SSL feature when CPx being used.

Related CVEs

Other vulnerabilities affecting the same vendor(s)