An information disclosure vulnerability in Fortinet FortiOS 6.0.1, 5.6.7 and below allows attacker to reveals serial number of FortiGate via hostname field defined in connection control setup packets of PPTP protocol.
| Software | From | Fixed in |
|---|---|---|
| fortinet / fortios | 6.0.0 | 6.0.0.x |
| fortinet / fortios | 6.0.1 | 6.0.1.x |
| fortinet / fortios | - | 5.6.7.x |