fortinet
1,122 tracked vulnerabilities.
CVE-2023-50178
HIGH
FortiADC 6.0-6.0.3, 6.1, 6.2, 7.0, 7.1, 7.2.0-7.2.3, 7.4.0 - MITM via Improper Certificate Validation
Jul 09, 2024
CVSS 7.4
EPSS 0.00
CVE-2023-46720
MEDIUM
FortiOS 6.0.13-6.0.18, 6.2.9-6.2.16, 6.4.6-6.4.15, 7.0.0-7.0.12, 7.2.0-7.2.7, 7.4.0-7.4.1 - Stack-based Buffer Overflow
Jun 11, 2024
CVSS 6.7
EPSS 0.00
CVE-2023-23775
MEDIUM
FortiSOAR 7.0.0-7.2.0 - Authenticated SQL Injection via Crafted String Parameters
Jun 11, 2024
CVSS 6.5
EPSS 0.00
CVE-2023-48789
MEDIUM
Fortinet FortiPortal <6.0.14 - Info Disclosure
Jun 03, 2024
CVSS 4.3
EPSS 0.01
CVE-2023-50180
MEDIUM
FortiADC <= 7.4.1, <= 7.2.3, <= 7.1.4, <= 7.0.5, < 6.2.6 - Exposure of Sensitive System Information
May 14, 2024
CVSS 5.5
EPSS 0.00
CVE-2023-46714
HIGH
Fortinet FortiOS <7.2.6, <7.4.1 - Buffer Overflow
May 14, 2024
CVSS 7.2
EPSS 0.00
CVE-2023-45586
MEDIUM
Fortinet Fortiproxy < 2.0.12 - Data Authenticity Bypass
May 14, 2024
CVSS 5.0
EPSS 0.00
CVE-2023-45583
MEDIUM
Fortinet FortiProxy <=7.2.5, <=7.0.11, <=2.0.13, <=1.2.13, <=1.1.6 - Format String Vulnerability via CLI/HTTP
May 14, 2024
CVSS 6.7
EPSS 0.00
CVE-2023-44247
MEDIUM
FortiOS 6.2.0-6.2.15 - Double Free via Crafted HTTP/HTTPS Requests
May 14, 2024
CVSS 6.6
EPSS 0.00
CVE-2023-40720
HIGH
FortiVoiceEnterprise <7.0.1, <=6.4.8 - Auth Bypass
May 14, 2024
CVSS 7.1
EPSS 0.00
CVE-2023-36640
MEDIUM
Fortinet FortiProxy <7.2.5 - Code Injection
May 14, 2024
CVSS 6.7
EPSS 0.00
CVE-2023-48784
MEDIUM
FortiOS <7.4.1, <7.2.7, All 6.4 - Code Injection
Apr 09, 2024
CVSS 6.7
EPSS 0.00
CVE-2023-47542
MEDIUM
FortiManager <7.4.1, <7.2.4, <7.0.10 - Code Injection
Apr 09, 2024
CVSS 6.7
EPSS 0.00
CVE-2023-47541
MEDIUM
FortiSandbox 2.0-4.2.6, 4.4.0-4.4.2 - Path Traversal via CLI
Apr 09, 2024
CVSS 6.7
EPSS 0.00
CVE-2023-47540
MEDIUM
FortiSandbox 3.0.5-3.0.7, 4.0, 4.2.1-4.2.6, 4.4.0-4.4.2 - OS Command Injection via CLI
Apr 09, 2024
CVSS 6.7
EPSS 0.00
CVE-2023-45590
CRITICAL
FortiClientLinux 7.2.0, 7.0.6-7.0.10, 7.0.3-7.0.4 - Remote Code Execution via Malicious Website
Apr 09, 2024
CVSS 9.6
EPSS 0.01
CVE-2023-41677
HIGH
Fortinet FortiProxy/FortiOS <7.4.1 - RCE
Apr 09, 2024
CVSS 7.5
EPSS 0.00
CVE-2023-48788
CRITICAL
KEVNUCLEI
Fortinet Forticlient Endpoint Management Server - SQL Injection
Mar 12, 2024
CVSS 9.8
EPSS 0.94
CVE-2023-47534
CRITICAL
Fortinet FortiClientEMS <7.2.2-6.0.8 - Code Injection
Mar 12, 2024
CVSS 9.6
EPSS 0.00
CVE-2023-46717
HIGH
FortiOS <7.4.1-7.2.6-7.0.12 - Auth Bypass
Mar 12, 2024
CVSS 7.5
EPSS 0.00
CVE-2023-42790
HIGH
FortiOS/FortiProxy Stack-based Buffer Overflow via HTTP Requests
Mar 12, 2024
CVSS 8.1
EPSS 0.00
CVE-2023-42789
CRITICAL
FortiOS/FortiProxy Out-of-bounds Write via HTTP Requests
Mar 12, 2024
CVSS 9.8
EPSS 0.28
CVE-2023-41842
MEDIUM
Fortinet FortiAnalyzer 6.2.0-6.4.7 & FortiManager 6.2.0-7.0.10 - Remote Code Execution via Format String Injection
Mar 12, 2024
CVSS 6.7
EPSS 0.00
CVE-2023-36554
HIGH
Fortinet FortiManager <7.4.0 - Privilege Escalation
Mar 12, 2024
CVSS 8.1
EPSS 0.00
CVE-2023-29181
HIGH
FortiOS 6.0.0-6.2.14, FortiProxy 1.0.0-2.0.12, FortiPAM 1.0.0-1.0.3 - Use of Externally-Controlled Format String
Feb 22, 2024
CVSS 8.8
EPSS 0.00
Products
fortios 267
fortiweb 124
fortiproxy 117
fortimanager 112
fortianalyzer 92
forticlient 85
fortisandbox 58
fortimail 46
fortiportal 44
fortiadc 43
fortisoar 31
fortinac 30
fortisiem 29
fortimanager_cloud 27
fortipam 25
fortivoice 24
fortiauthenticator 23
fortiwlm 23
fortiswitchmanager 19
fortinet_antivirus 18
fortianalyzer_cloud 17
fortitester 16
fortiwan 16
fortimanager_firmware 15
fortiswitch 14
fortiwlc 14
FortiOS 13
fortianalyzer_big_data 13
forticlientems 13
fortianalyzer_firmware 12
Quick Filters