CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.9. It affects Fortinet, FortiOS.
CVE
CVE-2018-9194
Severity
MEDIUM
CVSS
5.9
EPSS
1.13%
Fortinet FortiOS
Original NVD Description
A plaintext recovery of encrypted messages or a Man-in-the-middle (MiTM) attack on RSA PKCS #1 v1.5 encryption may be possible without knowledge of the server's private key. Fortinet FortiOS 5.4.6 to 5.4.9, 6.0.0 and 6.0.1 are vulnerable by such attack under VIP SSL feature when CPx being used.
Related CVEs
Other vulnerabilities affecting the same vendor(s)