CVE-2023-26207
- EPSS 0.19%
- Published 13.06.2023 09:15:16
- Last modified 21.11.2024 07:50:55
An insertion of sensitive information into log file vulnerability in Fortinet FortiOS 7.2.0 through 7.2.4 and FortiProxy 7.0.0 through 7.0.10. 7.2.0 through 7.2.1 allows an attacker to read certain passwords in plain text.
CVE-2023-27997
- EPSS 90.23%
- Published 13.06.2023 09:15:16
- Last modified 10.03.2025 20:40:57
A heap-based buffer overflow vulnerability [CWE-122] in FortiOS version 7.2.4 and below, version 7.0.11 and below, version 6.4.12 and below, version 6.0.16 and below and FortiProxy version 7.2.3 and below, version 7.0.9 and below, version 2.0.12 and ...
CVE-2022-42474
- EPSS 0.2%
- Published 13.06.2023 09:15:15
- Last modified 21.11.2024 07:25:02
A relative path traversal vulnerability [CWE-23] in Fortinet FortiOS version 7.2.0 through 7.2.3, version 7.0.0 through 7.0.9 and before 6.4.12, FortiProxy version 7.2.0 through 7.2.1 and 7.0.0 through 7.0.7, FortiSwitchManager version 7.2.0 through ...
CVE-2022-41327
- EPSS 0.02%
- Published 13.06.2023 09:15:14
- Last modified 21.11.2024 07:23:03
A cleartext transmission of sensitive information vulnerability [CWE-319] in Fortinet FortiOS version 7.2.0 through 7.2.4, 7.0.0 through 7.0.8, FortiProxy version 7.2.0 through 7.2.1 and 7.0.0 through 7.0.8 allows an authenticated attacker with reado...
CVE-2023-22640
- EPSS 0.36%
- Published 03.05.2023 22:15:17
- Last modified 21.11.2024 07:45:06
A out-of-bounds write in Fortinet FortiOS version 7.2.0 through 7.2.3, FortiOS version 7.0.0 through 7.0.10, FortiOS version 6.4.0 through 6.4.11, FortiOS version 6.2.0 through 6.2.13, FortiOS all versions 6.0, FortiProxy version 7.2.0 through 7.2.1...
CVE-2023-22641
- EPSS 0.11%
- Published 11.04.2023 17:15:08
- Last modified 21.11.2024 07:45:06
A url redirection to untrusted site ('open redirect') in Fortinet FortiOS version 7.2.0 through 7.2.3, FortiOS version 7.0.0 through 7.0.9, FortiOS versions 6.4.0 through 6.4.12, FortiOS all versions 6.2, FortiOS all versions 6.0, FortiProxy version ...
CVE-2022-41330
- EPSS 1.02%
- Published 11.04.2023 17:15:07
- Last modified 21.11.2024 07:23:04
An improper neutralization of input during web page generation vulnerability ('Cross-site Scripting') [CWE-79] in Fortinet FortiOS version 7.2.0 through 7.2.3, version 7.0.0 through 7.0.9, version 6.4.0 through 6.4.11 and before 6.2.12 and FortiProxy...
CVE-2022-41331
- EPSS 1.09%
- Published 11.04.2023 17:15:07
- Last modified 21.11.2024 07:23:04
A missing authentication for critical function vulnerability [CWE-306] in FortiPresence infrastructure server before version 1.2.1 allows a remote, unauthenticated attacker to access the Redis and MongoDB instances via crafted authentication requests...
CVE-2022-43947
- EPSS 0.1%
- Published 11.04.2023 17:15:07
- Last modified 21.11.2024 07:27:23
An improper restriction of excessive authentication attempts vulnerability [CWE-307] in Fortinet FortiOS version 7.2.0 through 7.2.3 and before 7.0.10, FortiProxy version 7.2.0 through 7.2.2 and before 7.0.8 administrative interface allows an attacke...
CVE-2022-41329
- EPSS 0.31%
- Published 07.03.2023 17:15:12
- Last modified 21.11.2024 07:23:03
An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in Fortinet FortiProxy version 7.2.0 through 7.2.1 and 7.0.0 through 7.0.7, FortiOS version 7.2.0 through 7.2.3 and 7.0.0 through 7.0.9 allows an unauthenticated at...