Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2015-1452

Overview

Vulnerability Score 7.8 7.8
CVE Id CVE-2015-1452
Last Modified 19 Feb 2015 01:59:16
Published 02 Feb 2015 11:59:05
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2015-1452

Summary

The Control and Provisioning of Wireless Access Points (CAPWAP) daemon in Fortinet FortiOS 5.0 Patch 7 build 4457 allows remote attackers to cause a denial of service (locked CAPWAP Access Controller) via a large number of ClientHello DTLS messages.

Vulnerable Systems

Operating System

  • Fortinet Fortios 5.0.7


References

MISC - http://www.security-assessment.com/files/documents/advisory/Fortinet_FortiOS_Multiple_Vulnerabilities.pdf

FULLDISC - 20150129 Fortinet FortiOS Multiple Vulnerabilities

CONFIRM - http://www.fortiguard.com/advisory/FG-IR-15-002/

SECUNIA - 61661

BID - 72383


Last Updated: 27 May 2016 11:07:48