Fortinet

Fortiweb

126 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.51%
  • Veröffentlicht 12.08.2026 12:19:03
  • Zuletzt bearbeitet 08.09.2026 21:02:41

An Improper Authentication vulnerability [CWE-287] vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.2, FortiWeb 7.6.0 through 7.6.6, FortiWeb 7.4.0 through 7.4.11, FortiWeb 7.2.0 through 7.2.12, FortiWeb 7.0.0 through 7.0.12 may allow a remote un...

  • EPSS 0.31%
  • Veröffentlicht 12.08.2026 12:19:02
  • Zuletzt bearbeitet 08.09.2026 21:02:08

A incomplete list of disallowed inputs vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.2, FortiWeb 7.6.0 through 7.6.5, FortiWeb 7.4 all versions, FortiWeb 7.2 all versions, FortiWeb 7.0 all versions may allow attacker to improper access control...

  • EPSS 6.44%
  • Veröffentlicht 14.04.2026 22:35:15
  • Zuletzt bearbeitet 24.07.2026 21:10:00

An out-of-bounds write vulnerability [CWE-787] vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.3, FortiWeb 7.6.0 through 7.6.6, FortiWeb 7.4.0 through 7.4.11 may allow a remote privileged attacker to execute arbitrary code or command via crafted...

  • EPSS 0.37%
  • Veröffentlicht 14.04.2026 15:38:20
  • Zuletzt bearbeitet 21.04.2026 17:16:24

A integer overflow or wraparound vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.3, FortiWeb 7.6.0 through 7.6.6, FortiWeb 7.4 all versions, FortiWeb 7.2 all versions, FortiWeb 7.0 all versions may allow attacker to denial of service via <insert...

  • EPSS 0.14%
  • Veröffentlicht 14.04.2026 15:38:16
  • Zuletzt bearbeitet 21.04.2026 17:21:18

A relative path traversal vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.2, FortiWeb 7.6.0 through 7.6.6, FortiWeb 7.4.1 through 7.4.12, FortiWeb 7.2.7 through 7.2.12, FortiWeb 7.0.10 through 7.0.12 may allow attacker to execute unauthorized co...

Medienbericht
  • EPSS 1.67%
  • Veröffentlicht 10.03.2026 16:44:21
  • Zuletzt bearbeitet 12.03.2026 20:26:06

A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.1, FortiWeb 7.6.0 through 7.6.5, FortiWeb 7.4.0 through 7.4.11, FortiWeb 7.2.0 through 7.2.12, FortiWeb ...

Medienbericht
  • EPSS 0.63%
  • Veröffentlicht 10.03.2026 16:44:20
  • Zuletzt bearbeitet 12.03.2026 20:12:21

A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.2, FortiWeb 7.6.0 through 7.6.6, FortiWeb 7.4 all versions, FortiWeb 7.2 all versions, FortiWeb 7.0.2 through 7.0.12 may allow a remote authent...

Medienbericht
  • EPSS 0.39%
  • Veröffentlicht 10.03.2026 16:44:20
  • Zuletzt bearbeitet 12.03.2026 20:10:46

A NULL Pointer Dereference vulnerability [CWE-476] vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.2, FortiWeb 7.6.0 through 7.6.6, FortiWeb 7.4 all versions, FortiWeb 7.2 all versions, FortiWeb 7.0 all versions may allow an authenticated attack...

Medienbericht
  • EPSS 0.76%
  • Veröffentlicht 10.03.2026 16:44:19
  • Zuletzt bearbeitet 12.03.2026 17:10:26

An Improper Control of Interaction Frequency vulnerability [CWE-799] vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.2, FortiWeb 7.6.0 through 7.6.5, FortiWeb 7.4.0 through 7.4.10, FortiWeb 7.2.0 through 7.2.11, FortiWeb 7.0.0 through 7.0.11 may...

Medienbericht
  • EPSS 0.46%
  • Veröffentlicht 10.03.2026 16:44:14
  • Zuletzt bearbeitet 12.03.2026 21:20:03

An authentication bypass by spoofing vulnerability in Fortinet FortiWeb 7.6.0 through 7.6.3, FortiWeb 7.4.0 through 7.4.8, FortiWeb 7.2 all versions, FortiWeb 7.0 all versions may allow a remote unauthenticated attacker to bypass hostname restriction...