fortinet

1,122 tracked vulnerabilities.

CVE-2023-50178 HIGH
FortiADC 6.0-6.0.3, 6.1, 6.2, 7.0, 7.1, 7.2.0-7.2.3, 7.4.0 - MITM via Improper Certificate Validation
Jul 09, 2024
CVSS 7.4
EPSS 0.00
CVE-2023-46720 MEDIUM
FortiOS 6.0.13-6.0.18, 6.2.9-6.2.16, 6.4.6-6.4.15, 7.0.0-7.0.12, 7.2.0-7.2.7, 7.4.0-7.4.1 - Stack-based Buffer Overflow
Jun 11, 2024
CVSS 6.7
EPSS 0.00
CVE-2023-23775 MEDIUM
FortiSOAR 7.0.0-7.2.0 - Authenticated SQL Injection via Crafted String Parameters
Jun 11, 2024
CVSS 6.5
EPSS 0.00
CVE-2023-48789 MEDIUM
Fortinet FortiPortal <6.0.14 - Info Disclosure
Jun 03, 2024
CVSS 4.3
EPSS 0.01
CVE-2023-50180 MEDIUM
FortiADC <= 7.4.1, <= 7.2.3, <= 7.1.4, <= 7.0.5, < 6.2.6 - Exposure of Sensitive System Information
May 14, 2024
CVSS 5.5
EPSS 0.00
CVE-2023-46714 HIGH
Fortinet FortiOS <7.2.6, <7.4.1 - Buffer Overflow
May 14, 2024
CVSS 7.2
EPSS 0.00
CVE-2023-45586 MEDIUM
Fortinet Fortiproxy < 2.0.12 - Data Authenticity Bypass
May 14, 2024
CVSS 5.0
EPSS 0.00
CVE-2023-45583 MEDIUM
Fortinet FortiProxy <=7.2.5, <=7.0.11, <=2.0.13, <=1.2.13, <=1.1.6 - Format String Vulnerability via CLI/HTTP
May 14, 2024
CVSS 6.7
EPSS 0.00
CVE-2023-44247 MEDIUM
FortiOS 6.2.0-6.2.15 - Double Free via Crafted HTTP/HTTPS Requests
May 14, 2024
CVSS 6.6
EPSS 0.00
CVE-2023-40720 HIGH
FortiVoiceEnterprise <7.0.1, <=6.4.8 - Auth Bypass
May 14, 2024
CVSS 7.1
EPSS 0.00
CVE-2023-36640 MEDIUM
Fortinet FortiProxy <7.2.5 - Code Injection
May 14, 2024
CVSS 6.7
EPSS 0.00
CVE-2023-48784 MEDIUM
FortiOS <7.4.1, <7.2.7, All 6.4 - Code Injection
Apr 09, 2024
CVSS 6.7
EPSS 0.00
CVE-2023-47542 MEDIUM
FortiManager <7.4.1, <7.2.4, <7.0.10 - Code Injection
Apr 09, 2024
CVSS 6.7
EPSS 0.00
CVE-2023-47541 MEDIUM
FortiSandbox 2.0-4.2.6, 4.4.0-4.4.2 - Path Traversal via CLI
Apr 09, 2024
CVSS 6.7
EPSS 0.00
CVE-2023-47540 MEDIUM
FortiSandbox 3.0.5-3.0.7, 4.0, 4.2.1-4.2.6, 4.4.0-4.4.2 - OS Command Injection via CLI
Apr 09, 2024
CVSS 6.7
EPSS 0.00
CVE-2023-45590 CRITICAL
FortiClientLinux 7.2.0, 7.0.6-7.0.10, 7.0.3-7.0.4 - Remote Code Execution via Malicious Website
Apr 09, 2024
CVSS 9.6
EPSS 0.01
CVE-2023-41677 HIGH
Fortinet FortiProxy/FortiOS <7.4.1 - RCE
Apr 09, 2024
CVSS 7.5
EPSS 0.00
CVE-2023-48788 CRITICAL KEVNUCLEI
Fortinet Forticlient Endpoint Management Server - SQL Injection
Mar 12, 2024
CVSS 9.8
EPSS 0.94
CVE-2023-47534 CRITICAL
Fortinet FortiClientEMS <7.2.2-6.0.8 - Code Injection
Mar 12, 2024
CVSS 9.6
EPSS 0.00
CVE-2023-46717 HIGH
FortiOS <7.4.1-7.2.6-7.0.12 - Auth Bypass
Mar 12, 2024
CVSS 7.5
EPSS 0.00
CVE-2023-42790 HIGH
FortiOS/FortiProxy Stack-based Buffer Overflow via HTTP Requests
Mar 12, 2024
CVSS 8.1
EPSS 0.00
CVE-2023-42789 CRITICAL
FortiOS/FortiProxy Out-of-bounds Write via HTTP Requests
Mar 12, 2024
CVSS 9.8
EPSS 0.28
CVE-2023-41842 MEDIUM
Fortinet FortiAnalyzer 6.2.0-6.4.7 & FortiManager 6.2.0-7.0.10 - Remote Code Execution via Format String Injection
Mar 12, 2024
CVSS 6.7
EPSS 0.00
CVE-2023-36554 HIGH
Fortinet FortiManager <7.4.0 - Privilege Escalation
Mar 12, 2024
CVSS 8.1
EPSS 0.00
CVE-2023-29181 HIGH
FortiOS 6.0.0-6.2.14, FortiProxy 1.0.0-2.0.12, FortiPAM 1.0.0-1.0.3 - Use of Externally-Controlled Format String
Feb 22, 2024
CVSS 8.8
EPSS 0.00