fortinet

1,122 tracked vulnerabilities.

CVE-2021-36184 HIGH
Fortinet FortiWLM <8.6.1 - SQL Injection
Nov 02, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-36183 HIGH
FortiClient for Windows <7.0.1 & <6.4.2 - Privilege Escalation
Nov 02, 2021
CVSS 7.4
EPSS 0.00
CVE-2021-36176 MEDIUM
FortiPortal 4.0.0-6.0.5 - Denial of Service via Multiple HTTP Requests
Nov 02, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-36174 MEDIUM
FortiPortal < 6.0.6 - Denial of Service via License Verification Function
Nov 02, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-41019 LOW
FortiOS < 6.4.6 - Improper Certificate Validation via LDAP Server Connection
Nov 02, 2021
CVSS 3.5
EPSS 0.00
CVE-2021-36181 LOW
FortiPortal <6.0.6 - Use After Free
Nov 02, 2021
CVSS 3.1
EPSS 0.00
CVE-2021-36172 MEDIUM
FortiPortal <6.0.6 - DoS/Info Disclosure
Nov 02, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-32595 MEDIUM
FortiPortal < 5.3.7 - Denial of Service via Multiple HTTP Requests
Nov 02, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-26107 MEDIUM
FortiManager <6.4.5 - Privilege Escalation
Nov 02, 2021
CVSS 6.3
EPSS 0.00
CVE-2021-36178 MEDIUM
Fortinet FortiSDNConnector <1.1.7 - Info Disclosure
Oct 06, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-36175 MEDIUM
FortiWeb 6.0.0-6.2.3 - Authenticated Stored Cross-Site Scripting via Name/Description/Comments Parameters
Oct 06, 2021
CVSS 4.1
EPSS 0.00
CVE-2021-36170 LOW
FortiAnalyzerVM/FortiManagerVM <7.0.0,6.4.6 - Info Disclosure
Oct 06, 2021
CVSS 3.2
EPSS 0.00
CVE-2021-24021 MEDIUM
FortiAnalyzer < 6.2.8 - Authenticated Stored Cross-Site Scripting via Logview Column Settings
Oct 06, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-24019 HIGH
FortiClientEMS < 6.4.2 and <= 6.2.8 - Insufficient Session Expiration
Oct 06, 2021
CVSS 8.1
EPSS 0.15
CVE-2021-24017 MEDIUM
FortiManager < 6.2.7 - Improper Authentication via Request Handler
Sep 30, 2021
CVSS 5.4
EPSS 0.00
CVE-2021-24016 LOW
Fortinet FortiManager <6.4.3 - Command Injection
Sep 30, 2021
CVSS 3.7
EPSS 0.00
CVE-2021-36182 HIGH
Fortinet FortiWeb <6.3.13 - Command Injection
Sep 08, 2021
CVSS 8.8
EPSS 0.01
CVE-2021-36179 HIGH
Fortinet FortiWeb <6.3.14 - Buffer Overflow
Sep 08, 2021
CVSS 8.0
EPSS 0.01
CVE-2021-24006 MEDIUM
FortiManager <6.4.3 - Privilege Escalation
Sep 06, 2021
CVSS 6.3
EPSS 0.00
CVE-2021-32602 MEDIUM
FortiPortal < 4.0.4 - Unauthenticated Cross-Site Scripting via Lang Parameter
Aug 19, 2021
CVSS 5.8
EPSS 0.00
CVE-2021-32588 CRITICAL
FortiPortal <=6.0.4 Unauthenticated RCE via Tomcat Hard-coded Credentials
Aug 18, 2021
CVSS 9.8
EPSS 0.31
CVE-2021-32597 MEDIUM
FortiAnalyzer and FortiManager < 6.2.8 - Authenticated Stored Cross-Site Scripting via GET Parameters
Aug 06, 2021
CVSS 4.6
EPSS 0.00
CVE-2021-32587 MEDIUM
FortiManager/FortiAnalyzer <7.0.0, <6.4.5, <6.2.8, <6.0.11, <5.6.11...
Aug 06, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-32603 HIGH
FortiAnalyzer and FortiManager 5.6.0-6.2.7 - Authenticated Server-Side Request Forgery
Aug 05, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-32598 MEDIUM
FortiAnalyzer and FortiManager 5.6.0-7.0.0 - Authenticated HTTP Request Smuggling via CRLF Injection
Aug 05, 2021
CVSS 4.3
EPSS 0.00