fortinet

1,122 tracked vulnerabilities.

CVE-2021-41016 HIGH
Fortinet FortiExtender <7.0.1,<4.2.3,<4.1.7 - Command Injection
Feb 02, 2022
CVSS 7.8
EPSS 0.01
CVE-2021-36177 MEDIUM
FortiAuthenticator HA service <6.3.2 - Info Disclosure
Feb 02, 2022
CVSS 4.2
EPSS 0.00
CVE-2021-44168 LOW KEV
FortiOS < 6.0.14 - Authenticated Arbitrary File Write via Restore Command
Jan 04, 2022
CVSS 3.3
EPSS 0.01
CVE-2021-41028 HIGH
FortiClientEMS <7.0.1-6.4.6 - Man-in-the-Middle
Dec 16, 2021
CVSS 8.2
EPSS 0.00
CVE-2021-36169 MEDIUM
Fortinet FortiOS <7.0.1-6.4.7 - RCE
Dec 13, 2021
CVSS 4.2
EPSS 0.00
CVE-2021-43071 HIGH
Fortinet FortiWeb <6.4.1 - Buffer Overflow
Dec 09, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-43068 MEDIUM
Fortinet FortiAuthenticator <6.4.0 - Auth Bypass
Dec 09, 2021
CVSS 5.4
EPSS 0.00
CVE-2021-43065 HIGH
Fortinet FortiNAC <9.2.0 - Privilege Escalation
Dec 09, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-42759 MEDIUM
Fortinet Meru AP <= 8.5.5 - OS Command Injection via CLI Commands
Dec 09, 2021
CVSS 6.7
EPSS 0.00
CVE-2021-36167 MEDIUM
FortiClient <7.0.0, <6.4.6, <6.2.8 - Auth Bypass
Dec 09, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-43204 MEDIUM
Fortinet FortiClientWindows <6.4.1 - DoS
Dec 09, 2021
CVSS 4.4
EPSS 0.00
CVE-2021-36194 HIGH
FortiWeb 6.3.0-6.3.15, 6.4.0-6.4.1 - Authenticated Remote Code Execution via API Controller Buffer Overflow
Dec 09, 2021
CVSS 8.8
EPSS 0.01
CVE-2021-36189 MEDIUM
Fortinet FortiClientEMS <7.0.1 & <6.4.4 - Info Disclosure
Dec 09, 2021
CVSS 6.8
EPSS 0.00
CVE-2021-41025 HIGH
FortiWeb 6.0.0-6.0.7, 6.1.0-6.1.2, 6.2.0-6.2.6, 6.3.0-6.3.15, 6.4.0-6.4.1 - Authentication Bypass via Capture-Replay
Dec 08, 2021
CVSS 7.3
EPSS 0.00
CVE-2021-41017 HIGH
FortiWeb <6.4.1-6.3.15 - Buffer Overflow
Dec 08, 2021
CVSS 8.8
EPSS 0.01
CVE-2021-36195 MEDIUM
FortiWeb <6.4.1 - Command Injection
Dec 08, 2021
CVSS 4.2
EPSS 0.00
CVE-2021-36173 HIGH
FortiOS 6.0.0-6.0.13, 6.2.0-6.2.9, 6.4.0-6.4.6, 7.0.0-7.0.1 - Remote Code Execution via Crafted Installation Image
Dec 08, 2021
CVSS 8.0
EPSS 0.01
CVE-2021-41030 MEDIUM
FortiClient EMS <7.0.1, <6.4.4 - Auth Bypass
Dec 08, 2021
CVSS 5.4
EPSS 0.00
CVE-2021-41021 HIGH
FortiNAC <8.8.8, <9.1.2 - Privilege Escalation
Dec 08, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-41013 MEDIUM
FortiWeb <6.4.1, <6.3.15 - Info Disclosure
Dec 08, 2021
CVSS 5.3
EPSS 0.00
CVE-2021-36188 MEDIUM
FortiWeb < 6.2.5 - Cross-Site Scripting via GET Parameters in Login and Error Handlers
Dec 08, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-43063 MEDIUM
FortiWeb 6.2.0-6.2.6, 6.3.0-6.3.15, 6.4.0-6.4.1 - Cross-Site Scripting via Login Page HTTP GET Request
Dec 08, 2021
CVSS 6.1
EPSS 0.01
CVE-2021-36190 MEDIUM
FortiWeb <= 6.4.1 and <= 6.3.15 - Unauthenticated Proxy Bypass via Crafted HTTP Requests
Dec 08, 2021
CVSS 5.5
EPSS 0.00
CVE-2021-43064 MEDIUM
Fortinet FortiWeb <6.4.1 - Open Redirect
Dec 08, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-41027 HIGH
Fortinet FortiWeb <6.4.1-6.4.0 - Buffer Overflow
Dec 08, 2021
CVSS 7.3
EPSS 0.00