fortinet

1,122 tracked vulnerabilities.

CVE-2024-47571 HIGH
Fortinet FortiManager <7.4.0 - Privilege Escalation
Jan 14, 2025
CVSS 8.1
EPSS 0.01
CVE-2024-47566 MEDIUM
Fortinet FortiRecorder <7.2.1 - Path Traversal
Jan 14, 2025
CVSS 5.1
EPSS 0.00
CVE-2024-46670 HIGH
FortiOS 7.2.0-7.2.9, 7.4.0-7.4.4, 7.6.0 - Unauthenticated Denial of Service via IPsec IKE Service
Jan 14, 2025
CVSS 7.5
EPSS 0.02
CVE-2024-46669 LOW
FortiOS 7.2.0-7.4.4 - Authenticated Denial of Service via IPsec IKE Service Integer Overflow
Jan 14, 2025
CVSS 3.5
EPSS 0.00
CVE-2024-46668 HIGH
FortiOS 6.4.0-6.4.15, 7.0.0-7.0.15, 7.2.0-7.2.8, 7.4.0-7.4.4 - Unauthenticated Denial of Service via Large File Uploads
Jan 14, 2025
CVSS 7.5
EPSS 0.02
CVE-2024-46667 HIGH
Fortinet FortiSIEM 5.3-7.1.5 - Denial of Service via TLS Connection Exhaustion
Jan 14, 2025
CVSS 7.5
EPSS 0.01
CVE-2024-46666 MEDIUM
FortiOS 6.4.0-7.4.4, 7.6.0 - Unauthenticated Denial of Service via GUI Endpoint Requests
Jan 14, 2025
CVSS 5.3
EPSS 0.01
CVE-2024-46665 LOW
FortiOS 7.4.0-7.4.4 and 7.6.0 - Sensitive Information Exposure via RADIUS Accounting Request Interception
Jan 14, 2025
CVSS 3.7
EPSS 0.00
CVE-2024-46664 MEDIUM
Fortinet FortiRecorder 7.0.0-7.2.1 - Authenticated Path Traversal via HTTP Request
Jan 14, 2025
CVSS 5.5
EPSS 0.01
CVE-2024-45326 MEDIUM
Fortinet FortiDeceptor <6.0.0 - Privilege Escalation
Jan 14, 2025
CVSS 4.3
EPSS 0.00
CVE-2024-40587 MEDIUM
Fortinet FortiVoice <7.0.4 - Command Injection
Jan 14, 2025
CVSS 6.7
EPSS 0.00
CVE-2024-36512 HIGH
Fortinet FortiManager/FortiAnalyzer <7.4.3/<7.2.5/<7.0.12/<6.2.13 -...
Jan 14, 2025
CVSS 7.2
EPSS 0.01
CVE-2024-36510 MEDIUM
FortiClientEMS/FortiSOAR <7.5.0 - Info Disclosure
Jan 14, 2025
CVSS 5.3
EPSS 0.00
CVE-2024-36506 LOW
FortiClientEMS 6.4-7.2.4 - Improper Verification of Source of a Communication Channel via Session Connection
Jan 14, 2025
CVSS 3.7
EPSS 0.00
CVE-2024-36504 MEDIUM
FortiOS 6.4-7.2.8, 7.4.0-7.4.4 - Authenticated Denial of Service via SSLVPN Web Portal URL
Jan 14, 2025
CVSS 6.5
EPSS 0.00
CVE-2024-35278 MEDIUM
FortiPortal 7.0.0-7.0.8 - Authenticated SQL Injection via HTTP Request
Jan 14, 2025
CVSS 4.3
EPSS 0.00
CVE-2024-35277 HIGH
FortiManager 6.4.0-6.4.14, 7.0.0-7.0.12, 7.2.0-7.2.5, 7.4.0-7.4.2 - Unauthenticated Access to Config
Jan 14, 2025
CVSS 8.6
EPSS 0.00
CVE-2024-35276 MEDIUM
Fortinet FortiAnalyzer & FortiManager Stack-based Buffer Overflow via Crafted Packets
Jan 14, 2025
CVSS 5.6
EPSS 0.00
CVE-2024-35275 MEDIUM
FortiAnalyzer 7.4.0-7.4.2 and FortiManager 7.4.0-7.4.2 - SQL Injection via HTTP Requests
Jan 14, 2025
CVSS 6.6
EPSS 0.00
CVE-2024-35273 HIGH
FortiManager 7.4.0-7.4.2 and FortiAnalyzer 7.4.0-7.4.2 - Out-of-bounds Write via HTTP Requests
Jan 14, 2025
CVSS 7.2
EPSS 0.00
CVE-2024-33503 MEDIUM
FortiManager/FortiAnalyzer Privilege Escalation via Shell Command Injection
Jan 14, 2025
CVSS 6.7
EPSS 0.00
CVE-2024-33502 MEDIUM
FortiAnalyzer/FortiManager Path Traversal via Crafted HTTP/HTTPS Requests
Jan 14, 2025
CVSS 6.5
EPSS 0.01
CVE-2024-32115 MEDIUM
Fortinet FortiManager <7.4.3 - Path Traversal
Jan 14, 2025
CVSS 5.5
EPSS 0.01
CVE-2024-27778 HIGH
Fortinet FortiSandbox <4.4.4 - Command Injection
Jan 14, 2025
CVSS 8.8
EPSS 0.01
CVE-2024-26012 MEDIUM
FortiAP 6.4-7.2.3/7.4.0-7.4.2, FortiAP-S 6.2-6.4.9, FortiAP-W2 6.4-7.2.3/7.4.0-7.4.2 - OS Command Injection via CLI
Jan 14, 2025
CVSS 6.7
EPSS 0.00