Vulnerability index

Browse CVEs

79 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Fortitoken Mobile MEDIUM 5.5
CVE-2026-44279

An improper export of android application components vulnerability in Fortinet FortiTokenAndroid 6.2 all versions, FortiTokenAndroid 6.1 all versions…

Mitigation only
Fix from $1,600 2026-05-12
Fortisandbox Cloud HIGH 7.2
CVE-2026-25836

An improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox Cloud 5.0.4, For…

Mitigation only
Fix from $1,950 2026-03-10
Fortisoar Agent Communication Bridge HIGH 7.5
CVE-2025-54659

An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability [CWE-22] vulnerability in Fortinet FortiSOAR Agent Co…

Mitigation only
Fix from $1,950 2026-03-10
Forticlientems CRITICAL 9.8
CVE-2026-21643 KEVEPSS 94%

An improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiClientEMS 7.4.4 may allow an u…

Mitigation only
Fix from $2,300 2026-02-06
Fortimail CRITICAL 9.8
CVE-2023-47539

An improper access control vulnerability in FortiMail version 7.4.0 configured with RADIUS authentication and remote_wildcard enabled may allow a rem…

Mitigation only
Fix from $2,300 2025-03-18
Fortiaiops CRITICAL 9.8
CVE-2024-27782

Multiple insufficient session expiration weaknesses [CWE-613] vulnerability in Fortinet FortiAIOps 2.0.0 may allow an attacker to re-use stolen old s…

Mitigation only
Fix from $2,300 2024-07-09
Fortiaiops HIGH 8.8
CVE-2024-27783

Multiple cross-site request forgery (CSRF) weaknesses [CWE-352] vulnerability in Fortinet FortiAIOps 2.0.0 may allow an unauthenticated remote attack…

Mitigation only
Fix from $1,950 2024-07-09
Fortiaiops MEDIUM 6.5
CVE-2024-27784

Multiple Exposure of sensitive information to an unauthorized actor weaknesses [CWE-200] vulnerability in Fortinet FortiAIOps 2.0.0 may allow an auth…

Mitigation only
Fix from $1,600 2024-07-09
Fortiaiops MEDIUM 6.5
CVE-2024-27785

An improper neutralization of formula elements in a CSV File [CWE-1236] vulnerability in Fortinet FortiAIOps 2.0.0 may allow a remote authenticated a…

Mitigation only
Fix from $1,600 2024-07-09
Fortios HIGH 7.5
CVE-2024-26007

An improper check or handling of exceptional conditions vulnerability [CWE-703] in Fortinet FortiOS version 7.4.1 allows an unauthenticated attacker …

Mitigation only
Fix from $1,950 2024-05-14
Fortiproxy HIGH 8.8
CVE-2023-44250

An improper privilege management vulnerability [CWE-269] in a Fortinet FortiOS HA cluster version 7.4.0 through 7.4.1 and 7.2.5 and in a FortiProxy H…

Mitigation only
Fix from $1,950 2024-01-10
Fortiwan HIGH 8.8
CVE-2023-44251

** UNSUPPORTED WHEN ASSIGNED **A improper limitation of a pathname to a restricted directory ('path traversal') vulnerability [CWE-22] in Fortinet Fo…

Mitigation only
Fix from $1,950 2023-12-13
Fortiwan HIGH 8.8
CVE-2023-44252

** UNSUPPORTED WHEN ASSIGNED **An improper authentication vulnerability [CWE-287] in Fortinet FortiWAN version 5.2.0 through 5.2.1 and version 5.1.1 …

Mitigation only
Fix from $1,950 2023-12-13
Fortios HIGH 8.8
CVE-2023-41678

A double free in Fortinet FortiOS versions 7.0.0 through 7.0.5, FortiPAM version 1.0.0 through 1.0.3, 1.1.0 through 1.1.1 allows attacker to execute …

Mitigation only
Fix from $1,950 2023-12-13
Fortitester HIGH 7.8
CVE-2023-40716

An improper neutralization of special elements used in an OS command vulnerability [CWE-78]  in the command line interpreter of FortiTester 2.3.0 thr…

Mitigation only
Fix from $1,950 2023-12-13
Forticlient HIGH 7.8
CVE-2023-41840

A untrusted search path vulnerability in Fortinet FortiClientWindows 7.0.9 allows an attacker to perform a DLL Hijack attack via a malicious OpenSSL …

Mitigation only
Fix from $1,950 2023-11-14
Fortiguest MEDIUM 5.5
CVE-2023-25604

An insertion of sensitive information into log file vulnerability in Fortinet FortiGuest 1.0.0 allows a local attacker to access plaintext passwords …

Mitigation only
Fix from $1,600 2023-10-10
Fortipresence MEDIUM 5.3
CVE-2023-27998

A lack of custom error pages vulnerability [CWE-756] in FortiPresence versions 1.2.0 through 1.2.1 and all versions of 1.1 and 1.0 may allow an unaut…

Mitigation only
Fix from $1,600 2023-09-13
Fortisandbox HIGH 7.5
CVE-2022-26115

A use of password hash with insufficient computational effort vulnerability [CWE-916] in FortiSandbox before 4.2.0 may allow an attacker with access …

Mitigation only
Fix from $1,950 2023-02-16
Fortideceptor MEDIUM 5.4
CVE-2022-38373

An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiDeceptor management interface 4.2.0, 4.1.0 through 4.1.…

Mitigation only
Fix from $1,600 2022-11-02
Fortiadc MEDIUM 5.4
CVE-2022-35851

An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiADC management interface 7.1.0 may allow a remote and a…

Mitigation only
Fix from $1,600 2022-11-02
Fortiauthenticator Agent For Microsoft Outlook Web Access MEDIUM 6.1
CVE-2022-22304

An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiAuthenticator OWA Agent for Microsoft version 2.2 and 2…

Mitigation only
Fix from $1,600 2022-07-18
Fortideceptor HIGH 8.8
CVE-2020-29017

An OS command injection vulnerability in FortiDeceptor 3.1.0, 3.0.1, 3.0.0 may allow a remote authenticated attacker to execute arbitrary commands on…

Mitigation only
Fix from $1,950 2021-01-14
Fortibalancer 400 Firmware HIGH 8.8
CVE-2014-2721

In FortiBalancer 400, 1000, 2000 and 3000, a platform-specific remote access vulnerability has been discovered that may allow a remote user to gain p…

Mitigation only
Fix from $1,950 2020-03-19
Fortibalancer 400 Firmware HIGH 8.8
CVE-2014-2722

In FortiBalancer 400, 1000, 2000 and 3000, a platform-specific remote access vulnerability has been discovered that may allow a remote user to gain p…

No fix yet
Fix from $1,950 2020-03-19
Fortibalancer 400 Firmware HIGH 8.8
CVE-2014-2723

In FortiBalancer 400, 1000, 2000 and 3000, a platform-specific remote access vulnerability has been discovered that may allow a remote user to gain p…

Mitigation only
Fix from $1,950 2020-03-19
Fortisiem HIGH 8.8
CVE-2019-17653

A Cross-Site Request Forgery (CSRF) vulnerability in the user interface of Fortinet FortiSIEM 5.2.5 could allow a remote, unauthenticated attacker to…

Mitigation only
Fix from $1,950 2020-03-12
Fortiauthenticator MEDIUM 6.1
CVE-2019-16154

An improper neutralization of input during web page generation in FortiAuthenticator WEB UI 6.0.0 may allow an unauthenticated user to perform a cros…

Mitigation only
Fix from $1,600 2020-01-07
Fcm Mb40 Firmware CRITICAL 9.8
CVE-2019-13400

Dynacolor FCM-MB40 v1.2.0.0 use /etc/appWeb/appweb.pass to store administrative web-interface credentials in cleartext. These credentials can be retr…

No fix yet
Fix from $2,300 2019-07-08
Fcm Mb40 Firmware HIGH 8.8
CVE-2019-13401

Dynacolor FCM-MB40 v1.2.0.0 devices have CSRF in all scripts under cgi-bin/.

No fix yet
Fix from $1,950 2019-07-08