fortinet

1,122 tracked vulnerabilities.

CVE-2019-16155 HIGH
FortiClient for Linux <6.2.1-6.2.2 - Privilege Escalation
Feb 07, 2020
CVSS 7.1
EPSS 0.00
CVE-2019-17652 MEDIUM
FortiClient < 6.2.1 - Stack Buffer Overflow via StartAvCustomScan IPC Request
Feb 06, 2020
CVSS 6.5
EPSS 0.01
CVE-2019-16152 MEDIUM
FortiClient for Linux < 6.2.1 - Denial of Service via Crafted IPC Client Requests
Feb 06, 2020
CVSS 6.5
EPSS 0.01
CVE-2019-15711 HIGH
FortiClient < 6.2.1 - Privilege Escalation via ExportLogs IPC Request Injection
Feb 06, 2020
CVSS 7.8
EPSS 0.00
CVE-2019-17651 MEDIUM
FortiSIEM < 5.2.5 - Authenticated Stored Cross-Site Scripting via Device Maintenance Schedule Description
Jan 28, 2020
CVSS 5.4
EPSS 0.00
CVE-2019-15712 HIGH
FortiMail 5.4.10 and below, 6.0.0-6.0.6, 6.2.0 - Improper Access Control in Admin WebUI
Jan 23, 2020
CVSS 7.2
EPSS 0.01
CVE-2019-15707 MEDIUM
FortiMail 6.2.0, 6.0.0-6.0.6, <5.4.10 - Authenticated Improper Access Control in Admin WebUI
Jan 23, 2020
CVSS 4.9
EPSS 0.01
CVE-2019-5593 MEDIUM
FortiOS < 5.6.10, 6.0.0-6.0.6, 6.2.0-6.2.1 - Unauthenticated Private Key Exposure via CLI Console
Jan 23, 2020
CVSS 5.5
EPSS 0.00
CVE-2019-16153 CRITICAL
Fortinet FortiSIEM <5.2.5 - Info Disclosure
Jan 23, 2020
CVSS 9.8
EPSS 0.00
CVE-2019-6700 MEDIUM
FortiSIEM < 5.2.5 - Authenticated Information Exposure via External Authentication Profile Form
Jan 07, 2020
CVSS 6.5
EPSS 0.00
CVE-2019-16154 MEDIUM
FortiAuthenticator WEB UI 6.0.0 - XSS
Jan 07, 2020
CVSS 6.1
EPSS 0.00
CVE-2019-15705 HIGH
FortiOS < 6.0.6 - Unauthenticated Denial of Service via SSL VPN Portal POST Request
Nov 27, 2019
CVSS 7.5
EPSS 0.01
CVE-2019-6693 MEDIUM KEV
FortiOS < 5.6.10 - Use of Hard-coded Credentials in Configuration Backup
Nov 21, 2019
CVSS 6.5
EPSS 0.72
CVE-2019-17650 HIGH
FortiClient < 6.2.1 - Local Privilege Escalation via Root Process Command Injection
Nov 21, 2019
CVSS 7.8
EPSS 0.00
CVE-2019-15704 MEDIUM
FortiClient for Mac >=6.0.0 <6.0.7 - Sensitive Information Exposure via Console Log
Nov 21, 2019
CVSS 5.5
EPSS 0.00
CVE-2019-6692 HIGH
FortiClient < 6.2.0 - DLL Preload Arbitrary Code Execution
Oct 24, 2019
CVSS 7.8
EPSS 0.00
CVE-2019-15703 HIGH
Fortinet FortiOS <6.2.1 - Info Disclosure
Oct 24, 2019
CVSS 7.5
EPSS 0.00
CVE-2019-5590 MEDIUM
FortiWeb < 6.0.2 - Cross-Site Scripting via HTML Report URL
Aug 28, 2019
CVSS 6.1
EPSS 0.00
CVE-2019-6695 CRITICAL
FortiManager < 6.0.6 - Insufficient Verification of Data Authenticity
Aug 23, 2019
CVSS 9.8
EPSS 0.00
CVE-2019-5594 MEDIUM
FortiNAC 8.3.0-8.3.6 and 8.5.0 - Unauthenticated Reflected Cross-Site Scripting via Search Field
Aug 23, 2019
CVSS 6.1
EPSS 0.00
CVE-2019-6698 CRITICAL
FortiRecorder Firmware < 2.7.4 - Unauthenticated Use of Hard-coded Credentials
Aug 23, 2019
CVSS 9.8
EPSS 0.01
CVE-2019-5592 MEDIUM
FortiOS IPS Engine < 3.00547 - Padding Oracle Vulnerabilities via CBC Padding Implementation
Aug 23, 2019
CVSS 5.9
EPSS 0.00
CVE-2019-13402 HIGH
Dynacolor FCM-MB40 v1.2.0.0 - Info Disclosure
Jul 08, 2019
CVSS 8.8
EPSS 0.00
CVE-2019-13401 HIGH
Fortinet FCM-MB40 1.2.0.0 - Cross-Site Request Forgery in cgi-bin Scripts
Jul 08, 2019
CVSS 8.8
EPSS 0.00
CVE-2019-13400 CRITICAL
Fortinet FCM-MB40 v1.2.0.0 - Insufficiently Protected Credentials via Cleartext Storage
Jul 08, 2019
CVSS 9.8
EPSS 0.00