CVE-2024-48886
- EPSS 0.5%
- Veröffentlicht 14.01.2025 14:15:33
- Zuletzt bearbeitet 03.02.2025 22:16:04
A weak authentication in Fortinet FortiOS versions 7.4.0 through 7.4.4, 7.2.0 through 7.2.8, 7.0.0 through 7.0.15, 6.4.0 through 6.4.15, FortiProxy versions 7.4.0 through 7.4.4, 7.2.0 through 7.2.10, 7.0.0 through 7.0.17, 2.0.0 through 2.0.14, FortiM...
CVE-2024-33503
- EPSS 0.03%
- Veröffentlicht 14.01.2025 14:15:29
- Zuletzt bearbeitet 31.01.2025 17:36:27
A improper privilege management in Fortinet FortiManager version 7.4.0 through 7.4.3, 7.2.0 through 7.2.5, 7.0.0 through 7.0.12, 6.4.0 through 6.4.14, FortiAnalyzer version 7.4.0 through 7.4.2, 7.2.0 through 7.2.5, 7.0.0 through 7.0.12, 6.4.0 through...
CVE-2024-35273
- EPSS 0.21%
- Veröffentlicht 14.01.2025 14:15:29
- Zuletzt bearbeitet 31.01.2025 17:38:10
A out-of-bounds write in Fortinet FortiManager version 7.4.0 through 7.4.2, FortiAnalyzer version 7.4.0 through 7.4.2 allows attacker to escalation of privilege via specially crafted http requests.
CVE-2024-35275
- EPSS 0.13%
- Veröffentlicht 14.01.2025 14:15:29
- Zuletzt bearbeitet 31.01.2025 16:49:57
A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiAnalyzer version 7.4.0 through 7.4.2, FortiManager version 7.4.0 through 7.4.2 allows attacker to escalation of privilege via specially crafted ht...
CVE-2024-35276
- EPSS 0.17%
- Veröffentlicht 14.01.2025 14:15:29
- Zuletzt bearbeitet 31.01.2025 17:04:42
A stack-based buffer overflow in Fortinet FortiAnalyzer versions 7.4.0 through 7.4.3, 7.2.0 through 7.2.5, 7.0.0 through 7.0.12, 6.4.0 through 6.4.14, FortiManager versions 7.4.0 through 7.4.3, 7.2.0 through 7.2.5, 7.0.0 through 7.0.12, 6.4.0 through...
CVE-2024-45330
- EPSS 0.29%
- Veröffentlicht 08.10.2024 15:15:15
- Zuletzt bearbeitet 19.10.2024 00:41:09
A use of externally-controlled format string in Fortinet FortiAnalyzer versions 7.4.0 through 7.4.3, 7.2.2 through 7.2.5 allows attacker to escalate its privileges via specially crafted requests.