CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.0. It affects FortiOS. It may be remotely exploitable.
CVE
CVE-2020-29010
Severity
MEDIUM
CVSS
5
EPSS
0.54%
FortiOS
Original NVD Description
An exposure of sensitive information to an unauthorized actor vulnerability in FortiOS version 6.2.4 and below, version 6.0.10 and belowmay allow remote authenticated actors to read the SSL VPN events log entries of users in other VDOMs by executing "get vpn ssl monitor" from the CLI. The sensitive data includes usernames, user groups, and IP address.
Related CVEs
Other vulnerabilities affecting the same vendor(s)