CVE-2024-55599
- EPSS 0.03%
- Veröffentlicht 08.07.2025 14:41:34
- Zuletzt bearbeitet 22.07.2025 16:22:46
An Improperly Implemented Security Check for Standard vulnerability [CWE-358] in FortiOS version 7.6.0, version 7.4.7 and below, 7.0 all versions, 6.4 all versions and FortiProxy version 7.6.1 and below, version 7.4.8 and below, 7.2 all versions, 7.0...
CVE-2024-50568
- EPSS 0.01%
- Veröffentlicht 10.06.2025 16:36:21
- Zuletzt bearbeitet 25.07.2025 15:25:35
A channel accessible by non-endpoint vulnerability [CWE-300] in Fortinet FortiOS version 7.4.0 through 7.4.3, 7.2.0 through 7.2.7 and before 7.0.14 & FortiProxy version 7.4.0 through 7.4.3, 7.2.0 through 7.2.9 and before 7.0.16 allows an unauthentica...
CVE-2023-29184
- EPSS 0.02%
- Veröffentlicht 10.06.2025 16:36:19
- Zuletzt bearbeitet 24.07.2025 19:57:52
An incomplete cleanup vulnerability [CWE-459] in FortiOS 7.2 all versions and before & FortiProxy version 7.2.0 through 7.2.2 and before 7.0.8 allows a VDOM privileged attacker to add SSH key files on the system silently via crafted CLI requests.
CVE-2025-22254
- EPSS 0.05%
- Veröffentlicht 10.06.2025 16:36:17
- Zuletzt bearbeitet 22.07.2025 21:25:11
An Improper Privilege Management vulnerability [CWE-269] affecting Fortinet FortiOS version 7.6.0 through 7.6.1, 7.4.0 through 7.4.6, 7.2.0 through 7.2.10, 7.0.0 through 7.0.16 and before 6.4.15, FortiProxy version 7.6.0 through 7.6.1 and before 7.4....
CVE-2024-50562
- EPSS 0.24%
- Veröffentlicht 10.06.2025 16:36:10
- Zuletzt bearbeitet 25.07.2025 15:25:23
An Insufficient Session Expiration vulnerability [CWE-613] in FortiOS SSL-VPN version 7.6.0, version 7.4.6 and below, version 7.2.10 and below, 7.0 all versions, 6.4 all versions may allow an attacker in possession of a cookie used to log in the SSL-...
CVE-2025-22252
- EPSS 0.08%
- Veröffentlicht 28.05.2025 07:55:49
- Zuletzt bearbeitet 04.06.2025 14:35:38
A missing authentication for critical function in Fortinet FortiProxy versions 7.6.0 through 7.6.1, FortiSwitchManager version 7.2.5, and FortiOS versions 7.4.4 through 7.4.6 and version 7.6.0 may allow an attacker with knowledge of an existing admin...
CVE-2024-50565
- EPSS 0.05%
- Veröffentlicht 08.04.2025 14:15:31
- Zuletzt bearbeitet 25.07.2025 15:22:38
A improper restriction of communication channel to intended endpoints vulnerability [CWE-923] in Fortinet FortiOS version 7.4.0 through 7.4.3, 7.2.0 through 7.2.7, 7.0.0 through 7.0.14, 6.4.0 through 6.4.15 and 6.2.0 through 6.2.16, Fortinet FortiPro...
CVE-2023-37930
- EPSS 0.16%
- Veröffentlicht 08.04.2025 14:15:30
- Zuletzt bearbeitet 23.07.2025 16:01:29
Multiple issues including the use of uninitialized ressources [CWE-908] and excessive iteration [CWE-834] vulnerabilities in Fortinet FortiOS SSL VPN webmode version 7.4.0, version 7.2.0 through 7.2.5, version 7.0.1 through 7.0.11 and version 6.4.7 t...
CVE-2024-26013
- EPSS 0.06%
- Veröffentlicht 08.04.2025 14:15:30
- Zuletzt bearbeitet 25.07.2025 15:22:20
A improper restriction of communication channel to intended endpoints vulnerability [CWE-923] in Fortinet FortiOS version 7.4.0 through 7.4.4, 7.2.0 through 7.2.8, 7.0.0 through 7.0.15, 6.4.0 through 6.4.15 and before 6.2.16, Fortinet FortiProxy vers...
CVE-2023-25610
- EPSS 25.03%
- Veröffentlicht 24.03.2025 15:39:48
- Zuletzt bearbeitet 24.07.2025 19:56:34
A buffer underwrite ('buffer underflow') vulnerability in the administrative interface of Fortinet FortiOS version 7.2.0 through 7.2.3, version 7.0.0 through 7.0.6, version 6.4.0 through 6.4.11 and version 6.2.12 and below, FortiProxy version 7.2.0 t...