Fortinet

Fortiproxy

116 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.1%
  • Veröffentlicht 12.11.2024 19:15:09
  • Zuletzt bearbeitet 17.01.2025 20:35:31

An improper neutralization of special elements in output used by a downstream component ('Injection') vulnerability [CWE-74] in FortiOS version 7.4.3 and below, version 7.2.8 and below, version 7.0.16 and below; FortiProxy version 7.4.3 and below, ve...

  • EPSS 0.05%
  • Veröffentlicht 12.11.2024 19:15:08
  • Zuletzt bearbeitet 12.12.2024 19:33:58

A missing authentication for critical function in Fortinet FortiManager version 7.4.0 through 7.4.2, 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 through 6.4.14, FortiPAM version 1.2.0, 1.1.0 through 1.1.2, 1.0.0 through 1.0.3, FortiProxy version...

  • EPSS 0.21%
  • Veröffentlicht 13.08.2024 16:15:07
  • Zuletzt bearbeitet 22.08.2024 14:32:16

An insufficient session expiration vulnerability [CWE-613] vulnerability in FortiOS 7.2.5 and below, 7.0 all versions, 6.4 all versions; FortiProxy 7.2 all versions, 7.0 all versions; FortiPAM 1.3 all versions, 1.2 all versions, 1.1 all versions, 1.0...

  • EPSS 0.05%
  • Veröffentlicht 09.07.2024 16:15:04
  • Zuletzt bearbeitet 21.11.2024 09:01:45

An incorrect parsing of numbers with different radices vulnerability [CWE-1389] in FortiProxy version 7.4.3 and below, version 7.2.10 and below, version 7.0.17 and below and FortiOS version 7.4.3 and below, version 7.2.8 and below, version 7.0.15 and...

  • EPSS 0.23%
  • Veröffentlicht 11.06.2024 15:16:04
  • Zuletzt bearbeitet 11.12.2024 19:54:35

A stack-based buffer overflow in Fortinet FortiPAM version 1.2.0, 1.1.0 through 1.1.2, 1.0.0 through 1.0.3, FortiWeb, FortiAuthenticator, FortiSwitchManager version 7.2.0 through 7.2.3, 7.0.1 through 7.0.3, FortiOS version 7.4.0 through 7.4.3, 7.2.0 ...

  • EPSS 5.71%
  • Veröffentlicht 11.06.2024 15:16:03
  • Zuletzt bearbeitet 21.11.2024 08:54:56

A use of password hash with insufficient computational effort vulnerability [CWE-916] affecting FortiOS version 7.4.3 and below, 7.2 all versions, 7.0 all versions, 6.4 all versions and FortiProxy version 7.4.2 and below, 7.2 all versions, 7.0 all ve...

  • EPSS 0.17%
  • Veröffentlicht 11.06.2024 15:16:03
  • Zuletzt bearbeitet 21.11.2024 08:56:57

An improper neutralization of input during web page Generation ('Cross-site Scripting') vulnerability [CWE-79] in FortiOS version 7.4.3 and below, 7.2 all versions, 7.0 all versions and FortiProxy version 7.4.2 and below, 7.2 all versions, 7.0 all ve...

  • EPSS 0.22%
  • Veröffentlicht 14.05.2024 17:15:24
  • Zuletzt bearbeitet 21.11.2024 08:27:00

An insufficient verification of data authenticity vulnerability [CWE-345] in Fortinet FortiOS SSL-VPN tunnel mode version 7.4.0 through 7.4.1, version 7.2.0 through 7.2.7 and before 7.0.12 & FortiProxy SSL-VPN tunnel mode version 7.4.0 through 7.4.1,...

  • EPSS 0.21%
  • Veröffentlicht 14.05.2024 17:15:22
  • Zuletzt bearbeitet 21.11.2024 08:27:00

A use of externally-controlled format string in Fortinet FortiProxy versions 7.2.0 through 7.2.5, 7.0.0 through 7.0.11, 2.0.0 through 2.0.13, 1.2.0 through 1.2.13, 1.1.0 through 1.1.6 FortiPAM versions 1.1.0, 1.0.0 through 1.0.3 FortiOS versions 7.4....

  • EPSS 0.09%
  • Veröffentlicht 14.05.2024 17:15:16
  • Zuletzt bearbeitet 21.11.2024 08:10:09

A use of externally-controlled format string in Fortinet FortiProxy versions 7.2.0 through 7.2.4, 7.0.0 through 7.0.10, 2.0.0 through 2.0.13, 1.2.0 through 1.2.13, 1.1.0 through 1.1.6, 1.0.0 through 1.0.7, FortiPAM versions 1.0.0 through 1.0.3, Forti...