Fortinet FortiSIEM Resource Exhaustion Vulnerability Leading to TLS Denial-of-Service

Vulnerability

A denial-of-service vulnerability has been identified in Fortinet FortiSIEM versions 5.3, 5.4, 6.x, 7.0, and 7.1.0 through 7.1.5. This vulnerability arises from an unlimited allocation of resources, allowing an attacker to consume all available connections and disrupt valid TLS traffic.

Impact

Exploitation of this vulnerability can lead to a denial-of-service condition, where legitimate TLS traffic is interrupted due to the exhaustion of available connections.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
1.9
impact
2.5
exploitability
7.4
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.