Fortinet

Fortiadc

39 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.06%
  • Published 14.11.2023 19:15:24
  • Last modified 21.11.2024 07:56:39

Multiple buffer copy without checking size of input ('classic buffer overflow') vulnerabilities [CWE-120] in FortiADC version 7.2.0 and before 7.1.2 & FortiDDoS-F version 6.5.0 and before 6.4.1 allows a privileged attacker to execute arbitrary code o...

  • EPSS 0.2%
  • Published 14.11.2023 19:15:19
  • Last modified 21.11.2024 07:49:48

A permissive cross-domain policy with untrusted domains vulnerability in Fortinet FortiADC 7.1.0 - 7.1.1, FortiDDoS-F 6.3.0 - 6.3.4 and 6.4.0 - 6.4.1 allow an unauthorized attacker to carry out privileged actions and retrieve sensitive information vi...

  • EPSS 0.2%
  • Published 14.11.2023 18:15:28
  • Last modified 21.11.2024 07:50:54

An improper access control vulnerability [CWE-284] in FortiADC automation feature 7.1.0 through 7.1.2, 7.0 all versions, 6.2 all versions, 6.1 all versions may allow an authenticated low-privileged attacker to escalate their privileges to super_admin...

  • EPSS 0.15%
  • Published 10.10.2023 17:15:11
  • Last modified 21.11.2024 07:49:49

An improper neutralization of special elements used in an OS Command ('OS Command Injection') vulnerability [CWE-78 ] in FortiManager 7.2.0 through 7.2.2, 7.0.0 through 7.0.7, 6.4.0 through 6.4.11, 6.2 all versions, 6.0 all versions, FortiAnalyzer 7....

  • EPSS 0.31%
  • Published 13.09.2023 13:15:07
  • Last modified 21.11.2024 07:11:48

An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in the management interface of FortiADC 7.1.0 through 7.1.1, 7.0.0 through 7.0.3, 6.2.0 through 6.2.5 and 6.1.0 all versions may allow an authenticated attac...

  • EPSS 0.08%
  • Published 13.06.2023 09:15:16
  • Last modified 21.11.2024 07:53:54

An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in FortiADC CLI 7.1.0, 7.0.0 through 7.0.3, 6.2.0 through 6.2.4, 6.1 all versions, 6.0 all versions may allow a local and authenticated attacker to execute un...

  • EPSS 0.17%
  • Published 13.06.2023 09:15:16
  • Last modified 21.11.2024 07:50:55

Multiple improper neutralization of special elements used in an os command ('OS Command Injection') vulnerabilties [CWE-78] in Fortinet FortiADCManager version 7.1.0 and before 7.0.0, FortiADC version 7.2.0 and before 7.1.2 allows a local authenticat...

  • EPSS 0.17%
  • Published 03.05.2023 22:15:19
  • Last modified 21.11.2024 07:53:54

An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in FortiADC 7.2.0, 7.1.0 through 7.1.1 may allow an authenticated attacker to execute unauthorized commands via specifically crafted arguments to existing com...

  • EPSS 0.06%
  • Published 03.05.2023 22:15:18
  • Last modified 21.11.2024 07:53:53

A relative path traversal [CWE-23] in Fortinet FortiADC version 7.2.0 and before 7.1.1 allows a privileged attacker to delete arbitrary directories from the underlying file system via crafted CLI commands.

  • EPSS 0.25%
  • Published 11.04.2023 17:15:07
  • Last modified 21.11.2024 07:27:24

An improper neutralization of input during web page generation ('Cross-site Scripting') vulnerability [CWE-79] in FortiADC version 7.1.1 and below, version 7.0.3 and below, version 6.2.5 and below may allow an authenticated attacker to perform a cros...