The FortiGate LDAP configuration was detected to be insecure due to missing ca-cert, secure LDAPS, or server-identity-check, potentially exposing LDAP communications to credential interception or man-in-the-middle attacks under specific network conditions.
id: CVE-2019-5591
info:
name: FortiOS - Insecure LDAP Configuration Detection
author: ayewo
s
...