CVE-2023-29179
- EPSS 0.5%
- Published 22.02.2024 10:15:07
- Last modified 10.12.2024 19:28:38
A null pointer dereference in Fortinet FortiOS version 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 through 6.4.12, Fortiproxy version 7.2.0 through 7.2.4, 7.0.0 through 7.0.10 allows attacker to denial of service via specially crafted HTTP requ...
CVE-2023-29180
- EPSS 0.47%
- Published 22.02.2024 10:15:07
- Last modified 10.12.2024 16:58:41
A null pointer dereference in Fortinet FortiOS version 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 through 6.4.12, 6.2.0 through 6.2.14, 6.0.0 through 6.0.16, FortiProxy 7.2.0 through 7.2.3, 7.0.0 through 7.0.10, 2.0.0 through 2.0.12, 1.2.0 thro...
CVE-2024-23113
- EPSS 45.02%
- Published 15.02.2024 14:15:46
- Last modified 29.11.2024 15:09:12
A use of externally-controlled format string in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13, FortiProxy versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.8, 7.0.0 through 7.0.14, FortiPAM versions 1.2.0, 1.1...
CVE-2024-21762
- EPSS 92.65%
- Published 09.02.2024 09:15:08
- Last modified 29.11.2024 15:23:32
A out-of-bounds write in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13, 6.4.0 through 6.4.14, 6.2.0 through 6.2.15, 6.0.0 through 6.0.17, FortiProxy versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.8, 7.0.0 t...
CVE-2023-44250
- EPSS 0.13%
- Published 10.01.2024 18:15:46
- Last modified 21.11.2024 08:25:31
An improper privilege management vulnerability [CWE-269] in a Fortinet FortiOS HA cluster version 7.4.0 through 7.4.1 and 7.2.5 and in a FortiProxy HA cluster version 7.4.0 through 7.4.1 allows an authenticated attacker to perform elevated actions vi...
CVE-2023-47536
- EPSS 0.05%
- Published 13.12.2023 08:15:50
- Last modified 21.11.2024 08:30:24
An improper access control vulnerability [CWE-284] in FortiOS version 7.2.0, version 7.0.13 and below, version 6.4.14 and below and FortiProxy version 7.2.3 and below, version 7.0.9 and below, version 2.0.12 and below may allow a remote unauthenticat...
CVE-2023-36639
- EPSS 0.17%
- Published 13.12.2023 07:15:12
- Last modified 21.11.2024 08:10:09
A use of externally-controlled format string in Fortinet FortiProxy versions 7.2.0 through 7.2.4, 7.0.0 through 7.0.10, FortiOS versions 7.4.0, 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 through 6.4.12, 6.2.0 through 6.2.15, 6.0.0 through 6.0.1...
CVE-2023-36641
- EPSS 0.47%
- Published 14.11.2023 18:15:49
- Last modified 21.11.2024 08:10:09
A numeric truncation error in Fortinet FortiProxy version 7.2.0 through 7.2.4, FortiProxy version 7.0.0 through 7.0.10, FortiProxy 2.0 all versions, FortiProxy 1.2 all versions, FortiProxy 1.1, all versions, FortiProxy 1.0 all versions, FortiOS vers...
CVE-2023-28002
- EPSS 0.01%
- Published 14.11.2023 18:15:29
- Last modified 21.11.2024 07:53:54
An improper validation of integrity check value vulnerability [CWE-354] in FortiOS 7.2.0 through 7.2.3, 7.0.0 through 7.0.12, 6.4 all versions, 6.2 all versions, 6.0 all versions and VMs may allow a local attacker with admin privileges to boot a mali...
CVE-2023-41675
- EPSS 0.4%
- Published 10.10.2023 17:15:12
- Last modified 21.11.2024 08:21:27
A use after free vulnerability [CWE-416] in FortiOS version 7.2.0 through 7.2.4 and version 7.0.0 through 7.0.10 and FortiProxy version 7.2.0 through 7.2.2 and version 7.0.0 through 7.0.8 may allow an unauthenticated remote attacker to crash the WAD ...