CVE-2015-1571: Medium severity fortios vulnerability
DISPUTED The CAPWAP DTLS protocol implementation in Fortinet FortiOS 5.0 Patch 7 build 4457 uses the same certificate and private key across different customers' installations, which makes it easier for man-in-the-middle attackers to spoof SSL servers by leveraging the FortinetFactory certificate and private key. NOTE: FG-IR-15-002 says "The FortinetFactory certificate is unique to each device ... An attacker cannot therefore stage a MitM attack."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1571?
CVE-2015-1571 is considered moderate in severity due to its potential for man-in-the-middle attacks.
How do I fix CVE-2015-1571?
To fix CVE-2015-1571, update FortiOS to a version that eliminates the shared certificate and key issue.
What does CVE-2015-1571 affect?
CVE-2015-1571 affects Fortinet FortiOS version 5.0.7, which uses a common DTLS certificate across different installations.
What type of attack is possible due to CVE-2015-1571?
CVE-2015-1571 can allow man-in-the-middle attackers to spoof SSL servers, potentially intercepting traffic.
Is CVE-2015-1571 still relevant today?
While CVE-2015-1571 was reported in 2015, systems running the affected FortiOS version may still be at risk if not updated.