fortinet
1,122 tracked vulnerabilities.
CVE-2019-16155
HIGH
FortiClient for Linux <6.2.1-6.2.2 - Privilege Escalation
Feb 07, 2020
CVSS 7.1
EPSS 0.00
CVE-2019-17652
MEDIUM
FortiClient < 6.2.1 - Stack Buffer Overflow via StartAvCustomScan IPC Request
Feb 06, 2020
CVSS 6.5
EPSS 0.01
CVE-2019-16152
MEDIUM
FortiClient for Linux < 6.2.1 - Denial of Service via Crafted IPC Client Requests
Feb 06, 2020
CVSS 6.5
EPSS 0.01
CVE-2019-15711
HIGH
FortiClient < 6.2.1 - Privilege Escalation via ExportLogs IPC Request Injection
Feb 06, 2020
CVSS 7.8
EPSS 0.00
CVE-2019-17651
MEDIUM
FortiSIEM < 5.2.5 - Authenticated Stored Cross-Site Scripting via Device Maintenance Schedule Description
Jan 28, 2020
CVSS 5.4
EPSS 0.00
CVE-2019-15712
HIGH
FortiMail 5.4.10 and below, 6.0.0-6.0.6, 6.2.0 - Improper Access Control in Admin WebUI
Jan 23, 2020
CVSS 7.2
EPSS 0.01
CVE-2019-15707
MEDIUM
FortiMail 6.2.0, 6.0.0-6.0.6, <5.4.10 - Authenticated Improper Access Control in Admin WebUI
Jan 23, 2020
CVSS 4.9
EPSS 0.01
CVE-2019-5593
MEDIUM
FortiOS < 5.6.10, 6.0.0-6.0.6, 6.2.0-6.2.1 - Unauthenticated Private Key Exposure via CLI Console
Jan 23, 2020
CVSS 5.5
EPSS 0.00
CVE-2019-16153
CRITICAL
Fortinet FortiSIEM <5.2.5 - Info Disclosure
Jan 23, 2020
CVSS 9.8
EPSS 0.00
CVE-2019-6700
MEDIUM
FortiSIEM < 5.2.5 - Authenticated Information Exposure via External Authentication Profile Form
Jan 07, 2020
CVSS 6.5
EPSS 0.00
CVE-2019-16154
MEDIUM
FortiAuthenticator WEB UI 6.0.0 - XSS
Jan 07, 2020
CVSS 6.1
EPSS 0.00
CVE-2019-15705
HIGH
FortiOS < 6.0.6 - Unauthenticated Denial of Service via SSL VPN Portal POST Request
Nov 27, 2019
CVSS 7.5
EPSS 0.01
CVE-2019-6693
MEDIUM
KEV
FortiOS < 5.6.10 - Use of Hard-coded Credentials in Configuration Backup
Nov 21, 2019
CVSS 6.5
EPSS 0.72
CVE-2019-17650
HIGH
FortiClient < 6.2.1 - Local Privilege Escalation via Root Process Command Injection
Nov 21, 2019
CVSS 7.8
EPSS 0.00
CVE-2019-15704
MEDIUM
FortiClient for Mac >=6.0.0 <6.0.7 - Sensitive Information Exposure via Console Log
Nov 21, 2019
CVSS 5.5
EPSS 0.00
CVE-2019-6692
HIGH
FortiClient < 6.2.0 - DLL Preload Arbitrary Code Execution
Oct 24, 2019
CVSS 7.8
EPSS 0.00
CVE-2019-15703
HIGH
Fortinet FortiOS <6.2.1 - Info Disclosure
Oct 24, 2019
CVSS 7.5
EPSS 0.00
CVE-2019-5590
MEDIUM
FortiWeb < 6.0.2 - Cross-Site Scripting via HTML Report URL
Aug 28, 2019
CVSS 6.1
EPSS 0.00
CVE-2019-6695
CRITICAL
FortiManager < 6.0.6 - Insufficient Verification of Data Authenticity
Aug 23, 2019
CVSS 9.8
EPSS 0.00
CVE-2019-5594
MEDIUM
FortiNAC 8.3.0-8.3.6 and 8.5.0 - Unauthenticated Reflected Cross-Site Scripting via Search Field
Aug 23, 2019
CVSS 6.1
EPSS 0.00
CVE-2019-6698
CRITICAL
FortiRecorder Firmware < 2.7.4 - Unauthenticated Use of Hard-coded Credentials
Aug 23, 2019
CVSS 9.8
EPSS 0.01
CVE-2019-5592
MEDIUM
FortiOS IPS Engine < 3.00547 - Padding Oracle Vulnerabilities via CBC Padding Implementation
Aug 23, 2019
CVSS 5.9
EPSS 0.00
CVE-2019-13402
HIGH
Dynacolor FCM-MB40 v1.2.0.0 - Info Disclosure
Jul 08, 2019
CVSS 8.8
EPSS 0.00
CVE-2019-13401
HIGH
Fortinet FCM-MB40 1.2.0.0 - Cross-Site Request Forgery in cgi-bin Scripts
Jul 08, 2019
CVSS 8.8
EPSS 0.00
CVE-2019-13400
CRITICAL
Fortinet FCM-MB40 v1.2.0.0 - Insufficiently Protected Credentials via Cleartext Storage
Jul 08, 2019
CVSS 9.8
EPSS 0.00
Products
fortios 267
fortiweb 124
fortiproxy 117
fortimanager 112
fortianalyzer 92
forticlient 85
fortisandbox 58
fortimail 46
fortiportal 44
fortiadc 43
fortisoar 31
fortinac 30
fortisiem 29
fortimanager_cloud 27
fortipam 25
fortivoice 24
fortiauthenticator 23
fortiwlm 23
fortiswitchmanager 19
fortinet_antivirus 18
fortianalyzer_cloud 17
fortitester 16
fortiwan 16
fortimanager_firmware 15
fortiswitch 14
fortiwlc 14
FortiOS 13
fortianalyzer_big_data 13
forticlientems 13
fortianalyzer_firmware 12
Quick Filters