CVE-2023-47541
- EPSS 0.13%
- Veröffentlicht 09.04.2024 15:15:28
- Zuletzt bearbeitet 23.12.2024 14:57:00
An improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiSandbox version 4.4.0 through 4.4.2 and 4.2.0 through 4.2.6 and 4.0.0 through 4.0.5 and 3.2.0 through 3.2.4 and 3.1.0 through 3.1.5 and 3.0.0 through 3...
CVE-2023-47540
- EPSS 0.14%
- Veröffentlicht 09.04.2024 15:15:27
- Zuletzt bearbeitet 23.12.2024 14:55:53
An improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiSandbox version 4.4.0 through 4.4.2 and 4.2.0 through 4.2.6 and 4.0.0 through 4.0.5 and 3.2.0 through 3.2.4 and 3.0.5 through 3.0.7 may all...
CVE-2023-45587
- EPSS 0.44%
- Veröffentlicht 13.12.2023 07:15:20
- Zuletzt bearbeitet 21.11.2024 08:27:00
An improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiSandbox version 4.4.1 and 4.4.0 and 4.2.0 through 4.2.5 and 4.0.0 through 4.0.3 and 3.2.0 through 3.2.4 and 3.1.0 through 3.1.5 allows attacker t...
CVE-2023-41844
- EPSS 0.44%
- Veröffentlicht 13.12.2023 07:15:18
- Zuletzt bearbeitet 21.11.2024 08:21:47
A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiSandbox version 4.4.1 and 4.4.0 and 4.2.0 through 4.2.5 and 4.0.0 through 4.0.3 and 3.2.0 through 3.2.4 and 3.1.0 through 3.1.5 and 3.0.0 through ...
CVE-2023-41843
- EPSS 0.18%
- Veröffentlicht 13.10.2023 15:15:44
- Zuletzt bearbeitet 21.11.2024 08:21:47
A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiSandbox version 4.4.1 and 4.4.0 and 4.2.0 through 4.2.5 and 4.0.0 through 4.0.3 allows attacker to execute unauthorized code or commands via craft...
CVE-2023-41836
- EPSS 0.09%
- Veröffentlicht 13.10.2023 15:15:44
- Zuletzt bearbeitet 21.11.2024 08:21:46
An improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiSandbox version 4.4.0 and 4.2.0 through 4.2.4, and 4.0.0 through 4.0.4 and 3.2.0 through 3.2.4 and 3.1.0 through 3.1.5 and 3.0.4 through 3.0.7 al...
CVE-2023-41682
- EPSS 0.45%
- Veröffentlicht 13.10.2023 15:15:44
- Zuletzt bearbeitet 21.11.2024 08:21:28
A improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiSandbox version 4.4.0 and 4.2.0 through 4.2.5 and 4.0.0 through 4.0.3 and 3.2.0 through 3.2.4 and 2.5.0 through 2.5.2 and 2.4.1 and 2.4.0 allows attacke...
CVE-2023-41681
- EPSS 0.14%
- Veröffentlicht 13.10.2023 15:15:44
- Zuletzt bearbeitet 21.11.2024 08:21:28
A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiSandbox version 4.4.1 and 4.4.0 and 4.2.0 through 4.2.5 and 4.0.0 through 4.0.3 and 3.2.0 through 3.2.4 and 3.1.0 through 3.1.5 and 3.0.0 through ...
CVE-2023-41680
- EPSS 0.15%
- Veröffentlicht 13.10.2023 15:15:44
- Zuletzt bearbeitet 21.11.2024 08:21:28
A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiSandbox version 4.4.1 and 4.4.0 and 4.2.0 through 4.2.5 and 4.0.0 through 4.0.3 and 3.2.0 through 3.2.4 and 3.1.0 through 3.1.5 and 3.0.0 through ...
CVE-2022-22305
- EPSS 0.05%
- Veröffentlicht 01.09.2023 12:15:08
- Zuletzt bearbeitet 21.11.2024 06:46:36
An improper certificate validation vulnerability [CWE-295] in FortiManager 7.0.1 and below, 6.4.6 and below; FortiAnalyzer 7.0.2 and below, 6.4.7 and below; FortiOS 6.2.x and 6.0.x; FortiSandbox 4.0.x, 3.2.x and 3.1.x may allow a network adjacent and...