CVE-2019-5587

Lack of root file system integrity checking in Fortinet FortiOS VM application images all versions below 6.0.5 may allow attacker to implant malicious programs into the installing image by reassembling the image through specific methods.
Configurations

Configuration 1 (hide)

cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:*

History

21 Nov 2024, 04:45

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/108628 - Broken Link () http://www.securityfocus.com/bid/108628 - Broken Link
References () https://fortiguard.com/advisory/FG-IR-19-017 - Vendor Advisory () https://fortiguard.com/advisory/FG-IR-19-017 - Vendor Advisory

22 Apr 2022, 20:11

Type Values Removed Values Added
References (BID) http://www.securityfocus.com/bid/108628 - (BID) http://www.securityfocus.com/bid/108628 - Broken Link
CWE CWE-20 CWE-345

Information

Published : 2019-06-04 22:29

Updated : 2024-11-21 04:45


NVD link : CVE-2019-5587

Mitre link : CVE-2019-5587

CVE.ORG link : CVE-2019-5587


JSON object : View

Products Affected

fortinet

  • fortios
CWE
CWE-345

Insufficient Verification of Data Authenticity