Fortinet

Fortios

236 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.32%
  • Veröffentlicht 09.04.2024 15:15:27
  • Zuletzt bearbeitet 12.12.2024 19:22:04

A insufficiently protected credentials in Fortinet FortiProxy 7.4.0, 7.2.0 through 7.2.6, 7.0.0 through 7.0.12, 2.0.0 through 2.0.13, 1.2.0 through 1.2.13, 1.1.0 through 1.1.6, 1.0.0 through 1.0.7, Fortinet FortiOS 7.4.0 through 7.4.1, 7.2.0 through ...

  • EPSS 0.06%
  • Veröffentlicht 12.03.2024 15:15:49
  • Zuletzt bearbeitet 21.11.2024 08:56:57

An authorization bypass through user-controlled key vulnerability [CWE-639] in FortiOS version 7.4.0 through 7.4.1, 7.2.0 through 7.2.6, 7.0.1 through 7.0.13, 6.4.7 through 6.4.14, and FortiProxy version 7.4.0 through 7.4.2, 7.2.0 through 7.2.8, 7.0....

  • EPSS 23.64%
  • Veröffentlicht 12.03.2024 15:15:46
  • Zuletzt bearbeitet 21.11.2024 08:23:09

A out-of-bounds write in Fortinet FortiOS 7.4.0 through 7.4.1, 7.2.0 through 7.2.5, 7.0.0 through 7.0.12, 6.4.0 through 6.4.14, 6.2.0 through 6.2.15, FortiProxy 7.4.0, 7.2.0 through 7.2.6, 7.0.0 through 7.0.12, 2.0.0 through 2.0.13 allows attacker to...

  • EPSS 0.17%
  • Veröffentlicht 12.03.2024 15:15:46
  • Zuletzt bearbeitet 21.11.2024 08:23:09

A stack-based buffer overflow in Fortinet FortiOS 7.4.0 through 7.4.1, 7.2.0 through 7.2.5, 7.0.0 through 7.0.12, 6.4.0 through 6.4.14, 6.2.0 through 6.2.15, FortiProxy 7.4.0, 7.2.0 through 7.2.6, 7.0.0 through 7.0.12, 2.0.0 through 2.0.13 allows att...

  • EPSS 0.18%
  • Veröffentlicht 12.03.2024 15:15:46
  • Zuletzt bearbeitet 21.11.2024 08:29:08

An improper authentication vulnerability [CWE-287] in FortiOS versions 7.4.1 and below, versions 7.2.6 and below, and versions 7.0.12 and below when configured with FortiAuthenticator in HA may allow a readonly user to gain read-write access via succ...

  • EPSS 0.28%
  • Veröffentlicht 22.02.2024 10:15:08
  • Zuletzt bearbeitet 10.12.2024 19:07:41

A use of externally-controlled format string in Fortinet FortiOS 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 through 6.4.12, 6.2.0 through 6.2.14, 6.0.0 through 6.0.16, FortiProxy 7.2.0 through 7.2.4, 7.0.0 through 7.0.10, 2.0.0 through 2.0.12, ...

  • EPSS 0.5%
  • Veröffentlicht 22.02.2024 10:15:07
  • Zuletzt bearbeitet 10.12.2024 19:28:38

A null pointer dereference in Fortinet FortiOS version 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 through 6.4.12, Fortiproxy version 7.2.0 through 7.2.4, 7.0.0 through 7.0.10 allows attacker to denial of service via specially crafted HTTP requ...

  • EPSS 0.47%
  • Veröffentlicht 22.02.2024 10:15:07
  • Zuletzt bearbeitet 10.12.2024 16:58:41

A null pointer dereference in Fortinet FortiOS version 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 through 6.4.12, 6.2.0 through 6.2.14, 6.0.0 through 6.0.16, FortiProxy 7.2.0 through 7.2.3, 7.0.0 through 7.0.10, 2.0.0 through 2.0.12, 1.2.0 thro...

Warnung
  • EPSS 45.02%
  • Veröffentlicht 15.02.2024 14:15:46
  • Zuletzt bearbeitet 29.11.2024 15:09:12

A use of externally-controlled format string in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13, FortiProxy versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.8, 7.0.0 through 7.0.14, FortiPAM versions 1.2.0, 1.1...

  • EPSS 0.1%
  • Veröffentlicht 15.02.2024 14:15:45
  • Zuletzt bearbeitet 21.11.2024 08:30:25

An improper certificate validation vulnerability in Fortinet FortiOS 7.0.0 - 7.0.13, 7.2.0 - 7.2.6, 7.4.0 - 7.4.1 and 6.4 all versions allows a remote and unauthenticated attacker to perform a Man-in-the-Middle attack on the FortiLink communication c...