CVE

Id
78847  
CVE No.
CVE-2015-1570  
Status
Candidate  
Description
The Endpoint Control protocol implementation in Fortinet FortiClient 5.2.3.091 for Android and 5.2.028 for iOS does not validate certificates, which makes it easier for man-in-the-middle attackers to spoof servers via a crafted certificate.  
Phase
Assigned (20150210)  
Votes
None (candidate not yet proposed)  
Comments