Fortinet

FortiOS

282 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.64%
  • Veröffentlicht 12.03.2024 15:15:46
  • Zuletzt bearbeitet 21.11.2024 08:29:08

An improper authentication vulnerability [CWE-287] in FortiOS versions 7.4.1 and below, versions 7.2.6 and below, and versions 7.0.12 and below when configured with FortiAuthenticator in HA may allow a readonly user to gain read-write access via succ...

  • EPSS 0.72%
  • Veröffentlicht 22.02.2024 10:15:08
  • Zuletzt bearbeitet 10.12.2024 19:07:41

A use of externally-controlled format string in Fortinet FortiOS 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 through 6.4.12, 6.2.0 through 6.2.14, 6.0.0 through 6.0.16, FortiProxy 7.2.0 through 7.2.4, 7.0.0 through 7.0.10, 2.0.0 through 2.0.12, ...

  • EPSS 2.45%
  • Veröffentlicht 22.02.2024 10:15:07
  • Zuletzt bearbeitet 10.12.2024 19:28:38

A null pointer dereference in Fortinet FortiOS version 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 through 6.4.12, Fortiproxy version 7.2.0 through 7.2.4, 7.0.0 through 7.0.10 allows attacker to denial of service via specially crafted HTTP requ...

  • EPSS 2.61%
  • Veröffentlicht 22.02.2024 10:15:07
  • Zuletzt bearbeitet 10.12.2024 16:58:41

A null pointer dereference in Fortinet FortiOS version 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 through 6.4.12, 6.2.0 through 6.2.14, 6.0.0 through 6.0.16, FortiProxy 7.2.0 through 7.2.3, 7.0.0 through 7.0.10, 2.0.0 through 2.0.12, 1.2.0 thro...

Warnung Medienbericht
  • EPSS 61.73%
  • Veröffentlicht 15.02.2024 14:15:46
  • Zuletzt bearbeitet 24.10.2025 12:54:40

A use of externally-controlled format string in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13, FortiProxy versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.8, 7.0.0 through 7.0.14, FortiPAM versions 1.2.0, 1.1...

  • EPSS 0.21%
  • Veröffentlicht 15.02.2024 14:15:45
  • Zuletzt bearbeitet 14.01.2026 10:16:01

An improper certificate validation vulnerability in Fortinet FortiOS 7.4.0 through 7.4.1, FortiOS 7.2.0 through 7.2.6, FortiOS 7.0.0 through 7.0.15, FortiOS 6.4 all versions allows a remote and unauthenticated attacker to perform a Man-in-the-Middle...

Warnung Medienbericht
  • EPSS 84.29%
  • Veröffentlicht 09.02.2024 09:15:08
  • Zuletzt bearbeitet 04.08.2026 05:16:30

A out-of-bounds write in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13, 6.4.0 through 6.4.14, 6.2.0 through 6.2.15, 6.0.0 through 6.0.17, FortiProxy versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.8, 7.0.0 t...

  • EPSS 0.9%
  • Veröffentlicht 10.01.2024 18:15:46
  • Zuletzt bearbeitet 21.11.2024 08:25:31

An improper privilege management vulnerability [CWE-269] in a Fortinet FortiOS HA cluster version 7.4.0 through 7.4.1 and 7.2.5 and in a FortiProxy HA cluster version 7.4.0 through 7.4.1 allows an authenticated attacker to perform elevated actions vi...

  • EPSS 0.57%
  • Veröffentlicht 13.12.2023 08:15:50
  • Zuletzt bearbeitet 21.11.2024 08:30:24

An improper access control vulnerability [CWE-284] in FortiOS version 7.2.0, version 7.0.13 and below, version 6.4.14 and below and FortiProxy version 7.2.3 and below, version 7.0.9 and below, version 2.0.12 and below may allow a remote unauthenticat...

  • EPSS 1.07%
  • Veröffentlicht 13.12.2023 07:15:17
  • Zuletzt bearbeitet 21.11.2024 08:21:28

A double free in Fortinet FortiOS versions 7.0.0 through 7.0.5, FortiPAM version 1.0.0 through 1.0.3, 1.1.0 through 1.1.1 allows attacker to execute unauthorized code or commands via specifically crafted request.