CVE-2022-45858
- EPSS 0.08%
- Veröffentlicht 03.05.2023 22:15:15
- Zuletzt bearbeitet 21.11.2024 07:29:51
A use of a weak cryptographic algorithm vulnerability [CWE-327] in FortiNAC 9.4.1 and below, 9.2.6 and below, 9.1.0 all versions, 8.8.0 all versions, 8.7.0 all versions may increase the chances of an attacker to have access to sensitive information o...
CVE-2022-43950
- EPSS 0.15%
- Veröffentlicht 03.05.2023 22:15:09
- Zuletzt bearbeitet 21.11.2024 07:27:24
A URL redirection to untrusted site ('Open Redirect') vulnerability [CWE-601] in FortiNAC-F version 7.2.0, FortiNAC version 9.4.1 and below, 9.2 all versions, 9.1 all versions, 8.8 all versions, 8.7 all versions may allow an unauthenticated attack...
CVE-2022-43951
- EPSS 0.32%
- Veröffentlicht 11.04.2023 17:15:07
- Zuletzt bearbeitet 21.11.2024 07:27:24
An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiNAC 9.4.1 and below, 9.2.6 and below, 9.1.8 and below, 8.8.11 and below, 8.7.6 and below may allow an unauthenticated attacker to access sensitive informati...
CVE-2022-40676
- EPSS 0.99%
- Veröffentlicht 07.03.2023 17:15:12
- Zuletzt bearbeitet 21.11.2024 07:21:50
A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiNAC versions 9.4.0, 9.2.0 through 9.2.5, 9.1.0 through 9.1.8, 8.8.0 through 8.8.11, 8.7.0 through 8.7.6, 8.6.0 through 8.6.5, 8.5.0 through 8.5.4,...
CVE-2022-39953
- EPSS 0.05%
- Veröffentlicht 07.03.2023 17:15:11
- Zuletzt bearbeitet 21.11.2024 07:18:33
A improper privilege management in Fortinet FortiNAC version 9.4.0 through 9.4.1, FortiNAC version 9.2.0 through 9.2.6, FortiNAC version 9.1.0 through 9.1.8, FortiNAC all versions 8.8, FortiNAC all versions 8.7, FortiNAC all versions 8.6, FortiNAC al...
CVE-2023-22638
- EPSS 0.64%
- Veröffentlicht 16.02.2023 19:15:13
- Zuletzt bearbeitet 21.11.2024 07:45:06
Several improper neutralization of inputs during web page generation vulnerability [CWE-79] in FortiNAC 9.4.1 and below, 9.2.6 and below, 9.1.8 and below, 8.8.11 and below, 8.7.6 and below, 8.6.5 and below, 8.5.4 and below, 8.3.7 and below may allow...
CVE-2022-40678
- EPSS 0.05%
- Veröffentlicht 16.02.2023 19:15:13
- Zuletzt bearbeitet 21.11.2024 07:21:50
An insufficiently protected credentials in Fortinet FortiNAC versions 9.4.0, 9.2.0 through 9.2.5, 9.1.0 through 9.1.7, 8.8.0 through 8.8.11, 8.7.0 through 8.7.6, 8.6.0 through 8.6.5, 8.5.0 through 8.5.4, 8.3.7 may allow a local attacker with database...
CVE-2022-40677
- EPSS 0.29%
- Veröffentlicht 16.02.2023 19:15:13
- Zuletzt bearbeitet 21.11.2024 07:21:50
A improper neutralization of argument delimiters in a command ('argument injection') in Fortinet FortiNAC versions 9.4.0, 9.2.0 through 9.2.5, 9.1.0 through 9.1.7, 8.8.0 through 8.8.11, 8.7.0 through 8.7.6, 8.6.0 through 8.6.5, 8.5.0 through 8.5.4, 8...
CVE-2022-40675
- EPSS 0.23%
- Veröffentlicht 16.02.2023 19:15:13
- Zuletzt bearbeitet 21.11.2024 07:21:49
Some cryptographic issues in Fortinet FortiNAC versions 9.4.0 through 9.4.1, 9.2.0 through 9.2.7, 9.1.0 through 9.1.8, 8.8.0 through 8.8.11, 8.7.0 through 8.7.6, 8.6.0 through 8.6.5, 8.5.0 through 8.5.4, 8.3.7 may allow an attacker to decrypt and for...
CVE-2022-39954
- EPSS 0.04%
- Veröffentlicht 16.02.2023 19:15:13
- Zuletzt bearbeitet 21.11.2024 07:18:33
An improper restriction of xml external entity reference in Fortinet FortiNAC version 9.4.0 through 9.4.1, FortiNAC version 9.2.0 through 9.2.7, FortiNAC version 9.1.0 through 9.1.8, FortiNAC version 8.8.0 through 8.8.11, FortiNAC version 8.7.0 throu...