fortinet

1,122 tracked vulnerabilities.

CVE-2024-23106 HIGH
FortiClientEMS 7.2.0-7.2.4 and < 7.0.10 - Unauthenticated Brute Force Attack via HTTP/HTTPS Requests
Jan 14, 2025
CVSS 8.1
EPSS 0.01
CVE-2024-21758 MEDIUM
FortiWeb 7.2.0-7.2.7 and 7.4.0-7.4.1 - Authenticated Stack-based Buffer Overflow via CLI Commands
Jan 14, 2025
CVSS 6.4
EPSS 0.00
CVE-2024-50570 MEDIUM
FortiClient 7.0.0-7.0.13, 7.2.0-7.2.6, 7.4.0-7.4.1 - Cleartext Storage of VPN Password
Dec 18, 2024
CVSS 5.0
EPSS 0.00
CVE-2024-48889 HIGH
FortiManager <6.4.15, 6.4.10-7.6.0, Cloud 7.0.1-7.0.12, 7.2.1-7.2.7, <7.4.4 - OS Command Injection
Dec 18, 2024
CVSS 7.2
EPSS 0.02
CVE-2024-47574 HIGH
Fortinet FortiClientWindows <7.4.0 - Privilege Escalation
Nov 13, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-40592 HIGH
FortiClient MacOS <7.4.0 - Code Injection
Nov 12, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-36513 HIGH
FortiClient <7.2.4, <7.0.12, <=6.4 - Privilege Escalation
Nov 12, 2024
CVSS 8.2
EPSS 0.00
CVE-2024-36509 MEDIUM
FortiWeb 6.3.0-6.3.23, 7.0.0-7.0.10, 7.2.0-7.2.10, 7.4.0-7.4.3, 7.6.0 - Sensitive Info Exposure via Log Access
Nov 12, 2024
CVSS 4.2
EPSS 0.00
CVE-2024-36507 HIGH
Fortinet FortiClientWindows <7.4.0 - RCE
Nov 12, 2024
CVSS 7.3
EPSS 0.00
CVE-2024-35274 LOW
Fortinet FortiAnalyzer and FortiManager - Path Traversal via CLI Requests
Nov 12, 2024
CVSS 2.3
EPSS 0.00
CVE-2024-33510 MEDIUM
FortiOS <7.4.3, <7.2.8, <7.0.16 - Injection
Nov 12, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-33505 MEDIUM
FortiAnalyzer 6.4.0-7.4.2 and FortiManager 6.0.0-7.4.2 - Heap-based Buffer Overflow via HTTP Requests
Nov 12, 2024
CVSS 5.6
EPSS 0.00
CVE-2024-32118 MEDIUM
FortiManager 7.2.0-7.4.2 and FortiAnalyzer 7.2.0-7.4.2 - Authenticated OS Command Injection via CLI Requests
Nov 12, 2024
CVSS 6.7
EPSS 0.00
CVE-2024-32117 MEDIUM
Fortinet Fortianalyzer < 7.2.6 - Path Traversal
Nov 12, 2024
CVSS 4.9
EPSS 0.00
CVE-2024-32116 MEDIUM
Fortinet FortiManager 7.2.0-7.4.2 and FortiAnalyzer 7.2.0-7.4.2 - Authenticated Path Traversal via CLI Requests
Nov 12, 2024
CVSS 5.1
EPSS 0.00
CVE-2024-31496 MEDIUM
Fortinet Fortianalyzer < 7.2.6 - Out-of-Bounds Write
Nov 12, 2024
CVSS 6.7
EPSS 0.00
CVE-2024-26011 MEDIUM
Fortinet Fortios < 7.0.15 - Missing Authentication
Nov 12, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-23666 HIGH
Fortinet FortiAnalyzer-BigData <7.4.1 - Info Disclosure
Nov 12, 2024
CVSS 7.5
EPSS 0.08
CVE-2024-47575 CRITICAL KEVNUCLEI
Fortinet FortiManager <7.6.0 - RCE
Oct 23, 2024
CVSS 9.8
EPSS 0.94
CVE-2024-45330 HIGH
Fortinet FortiAnalyzer <7.4.3/<7.2.5 - Privilege Escalation
Oct 08, 2024
CVSS 7.2
EPSS 0.00
CVE-2024-33506 LOW
FortiManager < 7.2.6 - Authenticated Exposure of Sensitive Information via Crafted HTTP Requests
Oct 08, 2024
CVSS 3.3
EPSS 0.00
CVE-2024-45327 HIGH
FortiSOAR <7.4.3-7.0.3 - Privilege Escalation
Sep 11, 2024
CVSS 7.5
EPSS 0.01
CVE-2024-45323 MEDIUM
FortiEDR Manager API <6.2.2 - Info Disclosure
Sep 10, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-36511 LOW
FortiADC WAF <7.4.4 - Info Disclosure
Sep 10, 2024
CVSS 3.7
EPSS 0.00
CVE-2024-35282 MEDIUM
FortiClient VPN iOS <7.2, <7.0, <6.4, <6.2, <6.0 - Info Disclosure
Sep 10, 2024
CVSS 4.2
EPSS 0.00