CVE-2018-13374CISA KEVEPSS p98.4%

CVE-2018-13374Fortinet FortiOS and FortiADC Improper Access Control Vulnerability

Fortinet / FortiOS and FortiADC

Description

Fortinet FortiOS and FortiADC contain an improper access control vulnerability that allows attackers to obtain the LDAP server login credentials configured in FortiGate by pointing a LDAP server connectivity test request to a rogue LDAP server.

Scoring

EPSS38.09% probability of exploitation · percentile 98.4% · 2026-06-19T12:03:05Z

CISA KEV entry

Added to KEV: 2022-09-08

(incoming)1

TypeTargetConfidenceTier
KEVEntryFortinet FortiOS and FortiADC Improper Access Control Vulnerabilitykev-cve-2018-133740%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Fortinet FortiOS Default Configuration Vulnerability
CVE
Fortinet FortiOS and FortiProxy Improper Authorization
CVE
CVE-2024-32122
CVE
CVE-2026-22153
CVE
CVE-2022-40684
CVE
CVE-2026-49938
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.