fortinet
1,122 tracked vulnerabilities.
CVE-2021-41016
HIGH
Fortinet FortiExtender <7.0.1,<4.2.3,<4.1.7 - Command Injection
Feb 02, 2022
CVSS 7.8
EPSS 0.01
CVE-2021-36177
MEDIUM
FortiAuthenticator HA service <6.3.2 - Info Disclosure
Feb 02, 2022
CVSS 4.2
EPSS 0.00
CVE-2021-44168
LOW
KEV
FortiOS < 6.0.14 - Authenticated Arbitrary File Write via Restore Command
Jan 04, 2022
CVSS 3.3
EPSS 0.01
CVE-2021-41028
HIGH
FortiClientEMS <7.0.1-6.4.6 - Man-in-the-Middle
Dec 16, 2021
CVSS 8.2
EPSS 0.00
CVE-2021-36169
MEDIUM
Fortinet FortiOS <7.0.1-6.4.7 - RCE
Dec 13, 2021
CVSS 4.2
EPSS 0.00
CVE-2021-43071
HIGH
Fortinet FortiWeb <6.4.1 - Buffer Overflow
Dec 09, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-43068
MEDIUM
Fortinet FortiAuthenticator <6.4.0 - Auth Bypass
Dec 09, 2021
CVSS 5.4
EPSS 0.00
CVE-2021-43065
HIGH
Fortinet FortiNAC <9.2.0 - Privilege Escalation
Dec 09, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-42759
MEDIUM
Fortinet Meru AP <= 8.5.5 - OS Command Injection via CLI Commands
Dec 09, 2021
CVSS 6.7
EPSS 0.00
CVE-2021-36167
MEDIUM
FortiClient <7.0.0, <6.4.6, <6.2.8 - Auth Bypass
Dec 09, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-43204
MEDIUM
Fortinet FortiClientWindows <6.4.1 - DoS
Dec 09, 2021
CVSS 4.4
EPSS 0.00
CVE-2021-36194
HIGH
FortiWeb 6.3.0-6.3.15, 6.4.0-6.4.1 - Authenticated Remote Code Execution via API Controller Buffer Overflow
Dec 09, 2021
CVSS 8.8
EPSS 0.01
CVE-2021-36189
MEDIUM
Fortinet FortiClientEMS <7.0.1 & <6.4.4 - Info Disclosure
Dec 09, 2021
CVSS 6.8
EPSS 0.00
CVE-2021-41025
HIGH
FortiWeb 6.0.0-6.0.7, 6.1.0-6.1.2, 6.2.0-6.2.6, 6.3.0-6.3.15, 6.4.0-6.4.1 - Authentication Bypass via Capture-Replay
Dec 08, 2021
CVSS 7.3
EPSS 0.00
CVE-2021-41017
HIGH
FortiWeb <6.4.1-6.3.15 - Buffer Overflow
Dec 08, 2021
CVSS 8.8
EPSS 0.01
CVE-2021-36195
MEDIUM
FortiWeb <6.4.1 - Command Injection
Dec 08, 2021
CVSS 4.2
EPSS 0.00
CVE-2021-36173
HIGH
FortiOS 6.0.0-6.0.13, 6.2.0-6.2.9, 6.4.0-6.4.6, 7.0.0-7.0.1 - Remote Code Execution via Crafted Installation Image
Dec 08, 2021
CVSS 8.0
EPSS 0.01
CVE-2021-41030
MEDIUM
FortiClient EMS <7.0.1, <6.4.4 - Auth Bypass
Dec 08, 2021
CVSS 5.4
EPSS 0.00
CVE-2021-41021
HIGH
FortiNAC <8.8.8, <9.1.2 - Privilege Escalation
Dec 08, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-41013
MEDIUM
FortiWeb <6.4.1, <6.3.15 - Info Disclosure
Dec 08, 2021
CVSS 5.3
EPSS 0.00
CVE-2021-36188
MEDIUM
FortiWeb < 6.2.5 - Cross-Site Scripting via GET Parameters in Login and Error Handlers
Dec 08, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-43063
MEDIUM
FortiWeb 6.2.0-6.2.6, 6.3.0-6.3.15, 6.4.0-6.4.1 - Cross-Site Scripting via Login Page HTTP GET Request
Dec 08, 2021
CVSS 6.1
EPSS 0.01
CVE-2021-36190
MEDIUM
FortiWeb <= 6.4.1 and <= 6.3.15 - Unauthenticated Proxy Bypass via Crafted HTTP Requests
Dec 08, 2021
CVSS 5.5
EPSS 0.00
CVE-2021-43064
MEDIUM
Fortinet FortiWeb <6.4.1 - Open Redirect
Dec 08, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-41027
HIGH
Fortinet FortiWeb <6.4.1-6.4.0 - Buffer Overflow
Dec 08, 2021
CVSS 7.3
EPSS 0.00
Products
fortios 267
fortiweb 124
fortiproxy 117
fortimanager 112
fortianalyzer 92
forticlient 85
fortisandbox 58
fortimail 46
fortiportal 44
fortiadc 43
fortisoar 31
fortinac 30
fortisiem 29
fortimanager_cloud 27
fortipam 25
fortivoice 24
fortiauthenticator 23
fortiwlm 23
fortiswitchmanager 19
fortinet_antivirus 18
fortianalyzer_cloud 17
fortitester 16
fortiwan 16
fortimanager_firmware 15
fortiswitch 14
fortiwlc 14
FortiOS 13
fortianalyzer_big_data 13
forticlientems 13
fortianalyzer_firmware 12
Quick Filters