CVE-2024-52964
- EPSS 0.23%
- Published 12.08.2025 18:59:45
- Last modified 14.08.2025 01:15:15
An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability [CWE-22] in Fortinet FortiManager version 7.6.0 through 7.6.1, 7.4.0 through 7.4.5, 7.2.0 through 7.2.9 and below 7.0.13 & FortiManager Cloud version 7.6....
CVE-2025-24474
- EPSS 0.03%
- Published 08.07.2025 14:41:34
- Last modified 22.07.2025 18:11:02
An Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability [CWE-89] in FortiManager 7.6.0 through 7.6.1, 7.4.0 through 7.4.6, 7.2 all versions, 7.0 all versions, 6.4 all versions; FortiManager Cloud 7.4.1 th...
CVE-2024-46662
- EPSS 0.07%
- Published 14.03.2025 15:03:27
- Last modified 24.07.2025 18:49:00
A improper neutralization of special elements used in a command ('command injection') in Fortinet FortiManager versions 7.4.1 through 7.4.3, FortiManager Cloud versions 7.4.1 through 7.4.3 allows attacker to escalation of privilege via specifically c...
CVE-2024-40584
- EPSS 0.14%
- Published 11.02.2025 17:15:22
- Last modified 22.07.2025 21:37:17
An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] in Fortinet FortiAnalyzer version 7.4.0 through 7.4.3, 7.2.0 through 7.2.5, 7.0.0 through 7.0.13, 6.4.0 through 6.4.15 and 6.2.2 thro...
CVE-2024-33504
- EPSS 0.04%
- Published 11.02.2025 17:15:22
- Last modified 24.07.2025 20:00:29
A use of hard-coded cryptographic key to encrypt sensitive data vulnerability [CWE-321] in FortiManager 7.6.0 through 7.6.1, 7.4.0 through 7.4.5, 7.2.0 through 7.2.9, 7.0 all versions, 6.4 all versions may allow an attacker with JSON API access permi...
CVE-2024-50563
- EPSS 0.25%
- Published 16.01.2025 10:15:09
- Last modified 24.09.2025 15:25:38
A weak authentication in Fortinet FortiManager Cloud, FortiAnalyzer versions 7.6.0 through 7.6.1, 7.4.1 through 7.4.3, FortiAnalyzer Cloud versions 7.4.1 through 7.4.3, FortiManager versions 7.6.0 through 7.6.1, 7.4.1 through 7.4.3, FortiManager Clou...
CVE-2024-45331
- EPSS 0.02%
- Published 16.01.2025 09:15:06
- Last modified 03.02.2025 21:03:06
A incorrect privilege assignment in Fortinet FortiAnalyzer versions 7.4.0 through 7.4.3, 7.2.0 through 7.2.5, 7.0.0 through 7.0.13, 6.4.0 through 6.4.15, FortiManager versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.5, 7.0.0 through 7.0.13, 6.4.0 thro...
CVE-2024-48886
- EPSS 0.13%
- Published 14.01.2025 14:15:33
- Last modified 03.02.2025 22:16:04
A weak authentication in Fortinet FortiOS versions 7.4.0 through 7.4.4, 7.2.0 through 7.2.8, 7.0.0 through 7.0.15, 6.4.0 through 6.4.15, FortiProxy versions 7.4.0 through 7.4.4, 7.2.0 through 7.2.10, 7.0.0 through 7.0.17, 2.0.0 through 2.0.14, FortiM...
CVE-2024-50566
- EPSS 0.61%
- Published 14.01.2025 14:15:33
- Last modified 03.02.2025 22:09:31
A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiManager versions 7.6.0 through 7.6.1, versions 7.4.5 through 7.4.0, and versions 7.2.1 through 7.2.8, FortiManager Cloud versions 7.6.0 thro...
CVE-2024-48884
- EPSS 0.54%
- Published 14.01.2025 14:15:32
- Last modified 08.08.2025 16:00:27
A improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiManager versions 7.6.0 through 7.6.1, 7.4.1 through 7.4.3, FortiOS versions 7.6.0, 7.4.0 through 7.4.4, 7.2.5 through 7.2.9, 7.0.0 through 7.0.15, 6.4.0...