fortinet
1,122 tracked vulnerabilities.
CVE-2021-41024
HIGH
FortiProxy 7.0.0 and FortiOS 7.0.0-7.0.1 - Unauthenticated Path Traversal via Login Page GET Request
Dec 08, 2021
CVSS 7.5
EPSS 0.01
CVE-2021-41015
MEDIUM
Fortinet FortiWeb <6.4.1 & <6.3.15 - XSS
Dec 08, 2021
CVSS 6.1
EPSS 0.01
CVE-2021-41014
HIGH
FortiWeb <= 6.4.1 and <= 6.3.15 - Unauthenticated Denial of Service via HTTP Packet Flood
Dec 08, 2021
CVSS 7.5
EPSS 0.01
CVE-2021-36191
MEDIUM
Fortinet FortiWeb <6.4.1-6.3.15 - Open Redirect
Dec 08, 2021
CVSS 4.1
EPSS 0.00
CVE-2021-26109
HIGH
FortiOS < 7.0.1 - Unauthenticated Integer Overflow in SSLVPN Memory Allocator
Dec 08, 2021
CVSS 8.1
EPSS 0.01
CVE-2021-26108
HIGH
FortiOS < 5.6.13 - Use of Hard-coded Cryptographic Key in SSLVPN
Dec 08, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-43067
HIGH
Fortinet FortiAuthenticator <6.4.0 - Info Disclosure
Dec 08, 2021
CVSS 8.3
EPSS 0.00
CVE-2021-42760
HIGH
Fortinet FortiWLM < 8.6.1 - SQL Injection via Crafted Requests
Dec 08, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-42752
MEDIUM
Fortinet FortiWLM < 8.6.1 - Cross-Site Scripting via Crafted HTTP Requests
Dec 08, 2021
CVSS 5.4
EPSS 0.00
CVE-2021-41029
MEDIUM
Fortinet FortiWLM < 8.6.1 - Stored Cross-Site Scripting via Crafted HTTP Requests
Dec 08, 2021
CVSS 6.4
EPSS 0.00
CVE-2021-32591
MEDIUM
FortiSandbox <4.0.1, FortiWeb <6.3.12, FortiADC <6.2.1, FortiMail 7...
Dec 08, 2021
CVSS 5.3
EPSS 0.00
CVE-2021-26103
MEDIUM
FortiProxy < 1.2.11 and FortiGate < 6.2.9, 6.4.6, 7.0.0 - Unauthenticated Cross-Site Request Forgery via SSL VPN Portal
Dec 08, 2021
CVSS 6.3
EPSS 0.00
CVE-2021-42758
HIGH
FortiWLC <= 8.6.1 - Authenticated Privilege Escalation via GUI Restriction Bypass
Dec 08, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-42757
MEDIUM
Fortinet Fortiadc < 6.1.5 - Out-of-Bounds Write
Dec 08, 2021
CVSS 6.7
EPSS 0.00
CVE-2021-36180
HIGH
FortiWeb <6.4.1,<6.3.15,<6.2.5 - Command Injection
Dec 08, 2021
CVSS 8.1
EPSS 0.00
CVE-2021-26110
HIGH
FortiOS <7.0.0,6.4.6,6.2.9,6.0.12 - Privilege Escalation
Dec 08, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-32592
HIGH
FortiClientWindows/EMS DLL Hijack via OpenSSL Engine Library
Dec 01, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-32600
MEDIUM
FortiOS 5.6.x, 6.0.x, 6.2.0-6.2.9, 6.4.0-6.4.6, 7.0.0 - Authenticated Information Exposure via VDOM CLI
Nov 17, 2021
CVSS 5.0
EPSS 0.00
CVE-2021-36192
MEDIUM
FortiManager 5.6.0-5.6.10 - Exposure of Sensitive Information via ADOM Script Access
Nov 03, 2021
CVSS 5.2
EPSS 0.00
CVE-2021-42754
LOW
FortiClientMacOS <= 6.4.5 and <= 7.0.0 - Authenticated Camera Hijack via Malicious dylib File
Nov 02, 2021
CVSS 3.2
EPSS 0.00
CVE-2021-41023
MEDIUM
Fortinet FortiSIEM <4.1.4 - Info Disclosure
Nov 02, 2021
CVSS 5.5
EPSS 0.00
CVE-2021-41022
HIGH
Fortinet FortiSIEM <4.1.4 - Privilege Escalation
Nov 02, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-36187
MEDIUM
FortiWeb <= 6.4.0, <= 6.3.15, <= 6.2.5 - Denial of Service via Crafted HTTP Requests
Nov 02, 2021
CVSS 5.3
EPSS 0.01
CVE-2021-36186
HIGH
Fortinet FortiWeb <6.4.0 - Buffer Overflow
Nov 02, 2021
CVSS 8.8
EPSS 0.01
CVE-2021-36185
HIGH
Fortinet FortiWLM <8.6.1 - Code Injection
Nov 02, 2021
CVSS 8.8
EPSS 0.02
Products
fortios 267
fortiweb 124
fortiproxy 117
fortimanager 112
fortianalyzer 92
forticlient 85
fortisandbox 58
fortimail 46
fortiportal 44
fortiadc 43
fortisoar 31
fortinac 30
fortisiem 29
fortimanager_cloud 27
fortipam 25
fortivoice 24
fortiauthenticator 23
fortiwlm 23
fortiswitchmanager 19
fortinet_antivirus 18
fortianalyzer_cloud 17
fortitester 16
fortiwan 16
fortimanager_firmware 15
fortiswitch 14
fortiwlc 14
FortiOS 13
fortianalyzer_big_data 13
forticlientems 13
fortianalyzer_firmware 12
Quick Filters