fortinet

1,122 tracked vulnerabilities.

CVE-2017-14189 CRITICAL
Fortinet FortiWebManager 5.8.0 - Info Disclosure
Nov 29, 2017
CVSS 9.8
EPSS 0.01
CVE-2017-14186 MEDIUM NUCLEI
FortiGate FortiOS SSL VPN Web Portal - Cross-Site Scripting
Nov 29, 2017
CVSS 5.4
EPSS 0.03
CVE-2017-7736 MEDIUM
Fortinet FortiWeb <5.8.0-5.7.1 - XSS
Nov 22, 2017
CVSS 5.4
EPSS 0.00
CVE-2017-7739 MEDIUM
FortiOS 5.2.0-5.2.11, 5.4.0-5.4.5, 5.6.0 - Unauthenticated Reflected Cross-Site Scripting via Web Proxy Disclaimer Page
Nov 13, 2017
CVSS 6.1
EPSS 0.01
CVE-2017-7733 MEDIUM
Fortinet FortiOS <5.4.5, 5.6.0 - XSS
Oct 27, 2017
CVSS 6.1
EPSS 0.00
CVE-2017-14182 MEDIUM
FortiOS 5.4.0-5.4.5 - Authenticated Denial of Service via JSON API Params Parameter
Oct 27, 2017
CVSS 6.5
EPSS 0.01
CVE-2017-7732 MEDIUM
Fortinet FortiMail <5.1-<5.3.9 - XSS
Oct 26, 2017
CVSS 6.1
EPSS 0.01
CVE-2017-7341 HIGH
Fortinet FortiWLC - Command Injection
Oct 26, 2017
CVSS 7.2
EPSS 0.03
CVE-2017-7335 MEDIUM
Fortinet FortiWLC Authenticated XSS via Refresh/Branchtotable Parameters
Oct 26, 2017
CVSS 5.4
EPSS 0.00
CVE-2017-7735 MEDIUM
Fortinet FortiOS <5.2.11, <5.4.4 - XSS
Sep 12, 2017
CVSS 5.4
EPSS 0.00
CVE-2017-7734 MEDIUM
Fortinet FortiOS 5.4.0-5.4.4 - Stored Cross-Site Scripting via Config Revisions Comments
Sep 12, 2017
CVSS 5.4
EPSS 0.00
CVE-2017-3133 MEDIUM NUCLEI
Fortinet FortiOS < 5.6.0 - Cross-Site Scripting via SSL-VPN Replacement Message
Sep 12, 2017
CVSS 6.1
EPSS 0.09
CVE-2017-3132 MEDIUM NUCLEI
Fortinet FortiOS < 5.6.0 - Cross-Site Scripting via FortiToken Activation Action Input
Sep 12, 2017
CVSS 6.1
EPSS 0.03
CVE-2017-3131 MEDIUM NUCLEI
FortiOS 5.4.0-5.4.4 and 5.6.0 - Cross-Site Scripting via FortiView Applications Filter Input
Sep 12, 2017
CVSS 5.4
EPSS 0.11
CVE-2017-7737 MEDIUM
Fortinet FortiWeb <5.8.2 - Info Disclosure
Aug 10, 2017
CVSS 4.9
EPSS 0.00
CVE-2017-3130 HIGH
FortiOS 5.6.0 and 5.4.4 - Unauthenticated Information Disclosure via IKE VendorID Packet
Aug 10, 2017
CVSS 7.5
EPSS 0.00
CVE-2017-7336 CRITICAL
Fortinet FortiWLM <8.3.0 - Command Injection
Jul 22, 2017
CVSS 9.8
EPSS 0.01
CVE-2017-3127 MEDIUM
FortiOS 5.2.0-5.2.10 - Cross-Site Scripting via srcintf Parameter
Jun 01, 2017
CVSS 6.1
EPSS 0.00
CVE-2017-7731 HIGH
Fortinet FortiPortal <4.0.0 - Info Disclosure
May 27, 2017
CVSS 7.5
EPSS 0.00
CVE-2017-7343 MEDIUM
Fortinet FortiPortal <4.0.0 - Open Redirect
May 27, 2017
CVSS 6.1
EPSS 0.00
CVE-2017-7339 MEDIUM
Fortinet FortiPortal < 4.0.0 - Cross-Site Scripting via Add Revision Backup Name and Description Inputs
May 27, 2017
CVSS 6.1
EPSS 0.00
CVE-2017-7338 HIGH
Fortinet FortiPortal <4.0.0 - Info Disclosure
May 27, 2017
CVSS 7.5
EPSS 0.00
CVE-2017-7337 CRITICAL
Fortinet FortiPortal <4.0.0 - Info Disclosure
May 27, 2017
CVSS 9.1
EPSS 0.00
CVE-2017-3134 HIGH
Fortinet FortiWLC-SD <= 8.2.4 - Privilege Escalation via CLI Command
May 27, 2017
CVSS 7.2
EPSS 0.00
CVE-2017-3129 MEDIUM
FortiWeb <= 5.7.1 - Cross-Site Scripting via Site Publisher POST Parameter
May 27, 2017
CVSS 6.1
EPSS 0.00