CVE-2021-41019 – An improper validation of certificate with host mismatch [CWE-297] vulnerability in FortiO …

Vuln ID: CVE-2021-41019 (fortios)

Published:  2021-11-02  18:15:08Z

Description: An improper validation of certificate with host mismatch [CWE-297] vulnerability in FortiOS versions 6.4.6 and below may allow the connection to a malicious LDAP server via options in GUI, leading to disclosure of sensitive information, such as AD credentials.

Source: NVD.NIST.GOV

 


Date:

Categorie(s):

Tag(s):