Vulnerability index

Browse CVEs

79 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.5 CVE-2026-44279 An improper export of android application components vulnerability in Fortinet FortiTokenAndroid 6.2 all versions, FortiTokenAndroid 6.1 all versions… Fortitoken Mobile Mitigation only Fix from $1,6002026-05-12 HIGH 7.2 CVE-2026-25836 An improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox Cloud 5.0.4, For… Fortisandbox Cloud Mitigation only Fix from $1,9502026-03-10 HIGH 7.5 CVE-2025-54659 An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability [CWE-22] vulnerability in Fortinet FortiSOAR Agent Co… Fortisoar Agent Communication Bridge Mitigation only Fix from $1,9502026-03-10 CRITICAL 9.8 CVE-2026-21643 KEVEPSS 94% An improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiClientEMS 7.4.4 may allow an u… Forticlientems Mitigation only Fix from $2,3002026-02-06 CRITICAL 9.8 CVE-2023-47539 An improper access control vulnerability in FortiMail version 7.4.0 configured with RADIUS authentication and remote_wildcard enabled may allow a rem… Fortimail Mitigation only Fix from $2,3002025-03-18 CRITICAL 9.8 CVE-2024-27782 Multiple insufficient session expiration weaknesses [CWE-613] vulnerability in Fortinet FortiAIOps 2.0.0 may allow an attacker to re-use stolen old s… Fortiaiops Mitigation only Fix from $2,3002024-07-09 HIGH 8.8 CVE-2024-27783 Multiple cross-site request forgery (CSRF) weaknesses [CWE-352] vulnerability in Fortinet FortiAIOps 2.0.0 may allow an unauthenticated remote attack… Fortiaiops Mitigation only Fix from $1,9502024-07-09 MEDIUM 6.5 CVE-2024-27784 Multiple Exposure of sensitive information to an unauthorized actor weaknesses [CWE-200] vulnerability in Fortinet FortiAIOps 2.0.0 may allow an auth… Fortiaiops Mitigation only Fix from $1,6002024-07-09 MEDIUM 6.5 CVE-2024-27785 An improper neutralization of formula elements in a CSV File [CWE-1236] vulnerability in Fortinet FortiAIOps 2.0.0 may allow a remote authenticated a… Fortiaiops Mitigation only Fix from $1,6002024-07-09 HIGH 7.5 CVE-2024-26007 An improper check or handling of exceptional conditions vulnerability [CWE-703] in Fortinet FortiOS version 7.4.1 allows an unauthenticated attacker … Fortios Mitigation only Fix from $1,9502024-05-14 HIGH 8.8 CVE-2023-44250 An improper privilege management vulnerability [CWE-269] in a Fortinet FortiOS HA cluster version 7.4.0 through 7.4.1 and 7.2.5 and in a FortiProxy H… Fortiproxy Mitigation only Fix from $1,9502024-01-10 HIGH 8.8 CVE-2023-44251 ** UNSUPPORTED WHEN ASSIGNED **A improper limitation of a pathname to a restricted directory ('path traversal') vulnerability [CWE-22] in Fortinet Fo… Fortiwan Mitigation only Fix from $1,9502023-12-13 HIGH 8.8 CVE-2023-44252 ** UNSUPPORTED WHEN ASSIGNED **An improper authentication vulnerability [CWE-287] in Fortinet FortiWAN version 5.2.0 through 5.2.1 and version 5.1.1 … Fortiwan Mitigation only Fix from $1,9502023-12-13 HIGH 8.8 CVE-2023-41678 A double free in Fortinet FortiOS versions 7.0.0 through 7.0.5, FortiPAM version 1.0.0 through 1.0.3, 1.1.0 through 1.1.1 allows attacker to execute … Fortios Mitigation only Fix from $1,9502023-12-13 HIGH 7.8 CVE-2023-40716 An improper neutralization of special elements used in an OS command vulnerability [CWE-78]  in the command line interpreter of FortiTester 2.3.0 thr… Fortitester Mitigation only Fix from $1,9502023-12-13 HIGH 7.8 CVE-2023-41840 A untrusted search path vulnerability in Fortinet FortiClientWindows 7.0.9 allows an attacker to perform a DLL Hijack attack via a malicious OpenSSL … Forticlient Mitigation only Fix from $1,9502023-11-14 MEDIUM 5.5 CVE-2023-25604 An insertion of sensitive information into log file vulnerability in Fortinet FortiGuest 1.0.0 allows a local attacker to access plaintext passwords … Fortiguest Mitigation only Fix from $1,6002023-10-10 MEDIUM 5.3 CVE-2023-27998 A lack of custom error pages vulnerability [CWE-756] in FortiPresence versions 1.2.0 through 1.2.1 and all versions of 1.1 and 1.0 may allow an unaut… Fortipresence Mitigation only Fix from $1,6002023-09-13 HIGH 7.5 CVE-2022-26115 A use of password hash with insufficient computational effort vulnerability [CWE-916] in FortiSandbox before 4.2.0 may allow an attacker with access … Fortisandbox Mitigation only Fix from $1,9502023-02-16 MEDIUM 5.4 CVE-2022-38373 An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiDeceptor management interface 4.2.0, 4.1.0 through 4.1.… Fortideceptor Mitigation only Fix from $1,6002022-11-02 MEDIUM 5.4 CVE-2022-35851 An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiADC management interface 7.1.0 may allow a remote and a… Fortiadc Mitigation only Fix from $1,6002022-11-02 MEDIUM 6.1 CVE-2022-22304 An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiAuthenticator OWA Agent for Microsoft version 2.2 and 2… Fortiauthenticator Agent For Microsoft Outlook Web Access Mitigation only Fix from $1,6002022-07-18 HIGH 8.8 CVE-2020-29017 An OS command injection vulnerability in FortiDeceptor 3.1.0, 3.0.1, 3.0.0 may allow a remote authenticated attacker to execute arbitrary commands on… Fortideceptor Mitigation only Fix from $1,9502021-01-14 HIGH 8.8 CVE-2014-2721 In FortiBalancer 400, 1000, 2000 and 3000, a platform-specific remote access vulnerability has been discovered that may allow a remote user to gain p… Fortibalancer 400 Firmware Mitigation only Fix from $1,9502020-03-19 HIGH 8.8 CVE-2014-2722 In FortiBalancer 400, 1000, 2000 and 3000, a platform-specific remote access vulnerability has been discovered that may allow a remote user to gain p… Fortibalancer 400 Firmware No fix yet Fix from $1,9502020-03-19 HIGH 8.8 CVE-2014-2723 In FortiBalancer 400, 1000, 2000 and 3000, a platform-specific remote access vulnerability has been discovered that may allow a remote user to gain p… Fortibalancer 400 Firmware Mitigation only Fix from $1,9502020-03-19 HIGH 8.8 CVE-2019-17653 A Cross-Site Request Forgery (CSRF) vulnerability in the user interface of Fortinet FortiSIEM 5.2.5 could allow a remote, unauthenticated attacker to… Fortisiem Mitigation only Fix from $1,9502020-03-12 MEDIUM 6.1 CVE-2019-16154 An improper neutralization of input during web page generation in FortiAuthenticator WEB UI 6.0.0 may allow an unauthenticated user to perform a cros… Fortiauthenticator Mitigation only Fix from $1,6002020-01-07 CRITICAL 9.8 CVE-2019-13400 Dynacolor FCM-MB40 v1.2.0.0 use /etc/appWeb/appweb.pass to store administrative web-interface credentials in cleartext. These credentials can be retr… Fcm Mb40 Firmware No fix yet Fix from $2,3002019-07-08 HIGH 8.8 CVE-2019-13401 Dynacolor FCM-MB40 v1.2.0.0 devices have CSRF in all scripts under cgi-bin/. Fcm Mb40 Firmware No fix yet Fix from $1,9502019-07-08