fortinet

1,122 tracked vulnerabilities.

CVE-2021-41024 HIGH
FortiProxy 7.0.0 and FortiOS 7.0.0-7.0.1 - Unauthenticated Path Traversal via Login Page GET Request
Dec 08, 2021
CVSS 7.5
EPSS 0.01
CVE-2021-41015 MEDIUM
Fortinet FortiWeb <6.4.1 & <6.3.15 - XSS
Dec 08, 2021
CVSS 6.1
EPSS 0.01
CVE-2021-41014 HIGH
FortiWeb <= 6.4.1 and <= 6.3.15 - Unauthenticated Denial of Service via HTTP Packet Flood
Dec 08, 2021
CVSS 7.5
EPSS 0.01
CVE-2021-36191 MEDIUM
Fortinet FortiWeb <6.4.1-6.3.15 - Open Redirect
Dec 08, 2021
CVSS 4.1
EPSS 0.00
CVE-2021-26109 HIGH
FortiOS < 7.0.1 - Unauthenticated Integer Overflow in SSLVPN Memory Allocator
Dec 08, 2021
CVSS 8.1
EPSS 0.01
CVE-2021-26108 HIGH
FortiOS < 5.6.13 - Use of Hard-coded Cryptographic Key in SSLVPN
Dec 08, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-43067 HIGH
Fortinet FortiAuthenticator <6.4.0 - Info Disclosure
Dec 08, 2021
CVSS 8.3
EPSS 0.00
CVE-2021-42760 HIGH
Fortinet FortiWLM < 8.6.1 - SQL Injection via Crafted Requests
Dec 08, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-42752 MEDIUM
Fortinet FortiWLM < 8.6.1 - Cross-Site Scripting via Crafted HTTP Requests
Dec 08, 2021
CVSS 5.4
EPSS 0.00
CVE-2021-41029 MEDIUM
Fortinet FortiWLM < 8.6.1 - Stored Cross-Site Scripting via Crafted HTTP Requests
Dec 08, 2021
CVSS 6.4
EPSS 0.00
CVE-2021-32591 MEDIUM
FortiSandbox <4.0.1, FortiWeb <6.3.12, FortiADC <6.2.1, FortiMail 7...
Dec 08, 2021
CVSS 5.3
EPSS 0.00
CVE-2021-26103 MEDIUM
FortiProxy < 1.2.11 and FortiGate < 6.2.9, 6.4.6, 7.0.0 - Unauthenticated Cross-Site Request Forgery via SSL VPN Portal
Dec 08, 2021
CVSS 6.3
EPSS 0.00
CVE-2021-42758 HIGH
FortiWLC <= 8.6.1 - Authenticated Privilege Escalation via GUI Restriction Bypass
Dec 08, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-42757 MEDIUM
Fortinet Fortiadc < 6.1.5 - Out-of-Bounds Write
Dec 08, 2021
CVSS 6.7
EPSS 0.00
CVE-2021-36180 HIGH
FortiWeb <6.4.1,<6.3.15,<6.2.5 - Command Injection
Dec 08, 2021
CVSS 8.1
EPSS 0.00
CVE-2021-26110 HIGH
FortiOS <7.0.0,6.4.6,6.2.9,6.0.12 - Privilege Escalation
Dec 08, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-32592 HIGH
FortiClientWindows/EMS DLL Hijack via OpenSSL Engine Library
Dec 01, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-32600 MEDIUM
FortiOS 5.6.x, 6.0.x, 6.2.0-6.2.9, 6.4.0-6.4.6, 7.0.0 - Authenticated Information Exposure via VDOM CLI
Nov 17, 2021
CVSS 5.0
EPSS 0.00
CVE-2021-36192 MEDIUM
FortiManager 5.6.0-5.6.10 - Exposure of Sensitive Information via ADOM Script Access
Nov 03, 2021
CVSS 5.2
EPSS 0.00
CVE-2021-42754 LOW
FortiClientMacOS <= 6.4.5 and <= 7.0.0 - Authenticated Camera Hijack via Malicious dylib File
Nov 02, 2021
CVSS 3.2
EPSS 0.00
CVE-2021-41023 MEDIUM
Fortinet FortiSIEM <4.1.4 - Info Disclosure
Nov 02, 2021
CVSS 5.5
EPSS 0.00
CVE-2021-41022 HIGH
Fortinet FortiSIEM <4.1.4 - Privilege Escalation
Nov 02, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-36187 MEDIUM
FortiWeb <= 6.4.0, <= 6.3.15, <= 6.2.5 - Denial of Service via Crafted HTTP Requests
Nov 02, 2021
CVSS 5.3
EPSS 0.01
CVE-2021-36186 HIGH
Fortinet FortiWeb <6.4.0 - Buffer Overflow
Nov 02, 2021
CVSS 8.8
EPSS 0.01
CVE-2021-36185 HIGH
Fortinet FortiWLM <8.6.1 - Code Injection
Nov 02, 2021
CVSS 8.8
EPSS 0.02