CVE-2015-1570 Information
Feb 14, 2021
cve
Description
The Endpoint Control protocol implementation in Fortinet FortiClient 5.2.3.091 for Android and 5.2.028 for iOS does not validate certificates which makes it easier for man-in-the-middle attackers to spoof servers via a crafted certificate.
Reference
http://seclists.org/fulldisclosure/2015/Jan/124 http://www.security-assessment.com/files/documents/advisory/Fortinet_FortiClient_Multiple_Vulnerabilities.pdf
Share on: