Vulnerability index

Browse CVEs

79 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Fortimanager Firmware MEDIUM 5.4
CVE-2016-3193

Cross-site scripting (XSS) vulnerability in the appliance web-application in Fortinet FortiManager 5.x before 5.0.12, 5.2.x before 5.2.6, and 5.4.x b…

Mitigation only
Fix from $1,600 2016-08-19
Fortimanager Firmware MEDIUM 5.4
CVE-2016-3196

Cross-site scripting (XSS) vulnerability in Fortinet FortiAnalyzer 5.x before 5.0.12 and 5.2.x before 5.2.6 and FortiManager 5.x before 5.0.12 and 5.…

Mitigation only
Fix from $1,600 2016-08-05
Fortios MEDIUM 6.1
CVE-2016-3978EPSS 7%

The Web User Interface (WebUI) in FortiOS 5.0.x before 5.0.13, 5.2.x before 5.2.3, and 5.4.x before 5.4.0 allows remote attackers to redirect users t…

Mitigation only
Fix from $1,600 2016-04-08
Forticlient HIGH 7.8
CVE-2015-7362

Fortinet FortiClient Linux SSLVPN before build 2313, when installed on Linux in a home directory that is world readable and executable, allows local …

Mitigation only
Fix from $1,950 2016-01-08
Fortios HIGH 9.3
CVE-2015-7361

FortiOS 5.2.3, when configured to use High Availability (HA) and the dedicated management interface is enabled, does not require authentication for a…

Mitigation only
Fix from $1,950 2015-10-15
Fortios MEDIUM 6.4
CVE-2015-2323

FortiOS 5.0.x before 5.0.12 and 5.2.x before 5.2.4 supports anonymous, export, RC4, and possibly other weak ciphers when using TLS to connect to Fort…

Mitigation only
Fix from $1,600 2015-08-11
Single Sign On HIGH 7.5
CVE-2015-2281EPSS 10%

Stack-based buffer overflow in collectoragent.exe in Fortinet Single Sign On (FSSO) before build 164 allows remote attackers to execute arbitrary cod…

No fix yet
Fix from $1,950 2015-03-19
Fortiauthenticator MEDIUM 6.9
CVE-2015-1458

Fortinet FortiAuthenticator 3.0.0 allows local users to bypass intended restrictions and gain privileges by creating /tmp/privexec/dbgcore_enable_she…

No fix yet
Fix from $1,600 2015-02-03
Fortiauthenticator HIGH 7.5
CVE-2015-1455

Fortinet FortiAuthenticator 3.0.0 has a password of (1) slony for the slony PostgreSQL user and (2) www-data for the www-data PostgreSQL user, which …

No fix yet
Fix from $1,950 2015-02-03
Fortios HIGH 7.8
CVE-2015-1452

The Control and Provisioning of Wireless Access Points (CAPWAP) daemon in Fortinet FortiOS 5.0 Patch 7 build 4457 allows remote attackers to cause a …

Mitigation only
Fix from $1,950 2015-02-02
Coyote Point Equalizer Firmware MEDIUM 6.4
CVE-2014-8582

FortiNet FortiADC-E with firmware 3.1.1 before 4.0.5 and Coyote Point Equalizer with firmware 10.2.0a allows remote attackers to obtain access to arb…

Mitigation only
Fix from $1,600 2014-11-01
Fortigate 1000c MEDIUM 5.3
CVE-2012-4948

The default configuration of Fortinet Fortigate UTM appliances uses the same Certification Authority certificate and same private key across differen…

Mitigation only
Fix from $1,600 2012-11-14
Fortigate 1000 HIGH 7.5
CVE-2008-7161EPSS 6%

Fortinet FortiGuard Fortinet FortiGate-1000 3.00 build 040075,070111 allows remote attackers to bypass URL filtering via fragmented GET or POST reque…

No fix yet
Fix from $1,950 2009-09-04
Forticlient HIGH 7.2
CVE-2009-1262

Format string vulnerability in Fortinet FortiClient 3.0.614, and possibly earlier, allows local users to execute arbitrary code via format string spe…

Mitigation only
Fix from $1,950 2009-04-07
Fortiguard Antivirus HIGH 9.3
CVE-2008-5531

Fortinet Antivirus 3.113.0.0, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by pl…

Mitigation only
Fix from $1,950 2008-12-12
Fortinet28 MEDIUM 5.0
CVE-2006-1966

An unspecified Fortinet product, possibly Fortinet28, allows remote attackers to cause a denial of service via a "small synflood" to the SMTP port (T…

No fix yet
Fix from $1,600 2006-04-21
Fortinet MEDIUM 5.0
CVE-2005-3400

Multiple interpretation error in Fortinet 2.48.0.0 allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an "MZ…

Mitigation only
Fix from $1,600 2005-11-01
Fortinet Antivirus MEDIUM 5.1
CVE-2005-3221

Multiple interpretation error in unspecified versions of Fortinet Antivirus allows remote attackers to bypass virus detection via a malicious executa…

No fix yet
Fix from $1,600 2005-10-14
Fortinet Firewall HIGH 7.5
CVE-2005-1837

Fortinet firewall running FortiOS 2.x contains a hardcoded username with the password set to the serial number, which allows local users with console…

Mitigation only
Fix from $1,950 2005-06-01