CVEs (13)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Fortinet 2Fortianalyzer Fortianalyzer Big DataJun 17, 2026 Mar 10, 2026 N/A· v4 7.2 HIGH· v3 N/A· v2 An improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.4, FortiAnalyzer 7.4.0 through 7.4.7, FortiAnalyzer 7.2 all versions, Fort...Show more |
1Fortinet 3Fortianalyzer Fortianalyzer Big DataFortimanagerJun 17, 2026 Mar 11, 2025 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Two improper neutralization of special elements used in an SQL Command ('SQL Injection') vulnerability [CWE-89] in Fortinet FortiAnalyzer version 7.4.0 through 7.4.2 and before 7.2.5, FortiManager version 7.4.0 through 7...Show more |
1Fortinet 3Fortianalyzer Fortianalyzer Big DataFortimanagerJun 17, 2026 Mar 11, 2025 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Multiple improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiManager, FortiAnalyzer versions 7.4.0 through 7.4.2 7.2.0 through 7.2.5 and 7.0.0 through 7.0.12 and 6...Show more |
1Fortinet 5Fortianalyzer Fortianalyzer Big DataFortianalyzer Cloud+2 moreJun 17, 2026 Feb 11, 2025 N/A· v4 7.2 HIGH· v3 N/A· v2 An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] in Fortinet FortiAnalyzer version 7.4.0 through 7.4.3, 7.2.0 through 7.2.5, 7.0.0 through 7.0.13, 6.4.0...Show more |
1Fortinet 3Fortianalyzer Fortianalyzer Big DataFortimanagerJun 17, 2026 Nov 12, 2024 N/A· v4 2.3 LOW· v3 N/A· v2 An improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability [CWE-22] in Fortinet FortiAnalyzer versions below 7.4.2, Fortinet FortiManager versions below 7.4.2 and Fortinet FortiAnalyz...Show more |
1Fortinet 3Fortianalyzer Fortianalyzer Big DataFortimanagerJun 17, 2026 Nov 12, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Multiple improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerabilities [CWE-78] in Fortinet FortiManager version 7.4.0 through 7.4.2 and before 7.2.5, Fortinet FortiAnalyzer v...Show more |
1Fortinet 3Fortianalyzer Fortianalyzer Big DataFortimanagerJun 17, 2026 Nov 12, 2024 N/A· v4 4.9 MEDIUM· v3 N/A· v2 An improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability [CWE-22] in Fortinet FortiManager version 7.4.0 through 7.4.2 and below 7.2.5, FortiAnalyzer version 7.4.0 through 7.4.2 and...Show more |
1Fortinet 3Fortianalyzer Fortianalyzer Big DataFortimanagerJun 17, 2026 Nov 12, 2024 N/A· v4 6.0 MEDIUM· v3 N/A· v2 Multiple relative path traversal vulnerabilities [CWE-23] in Fortinet FortiManager version 7.4.0 through 7.4.2 and before 7.2.5, FortiAnalyzer version 7.4.0 through 7.4.2 and before 7.2.5 and FortiAnalyzer-BigData versio...Show more |
1Fortinet 3Fortianalyzer Fortianalyzer Big DataFortimanagerJun 17, 2026 Nov 12, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 A stack-based buffer overflow vulnerability [CWE-121] in Fortinet FortiManager version 7.4.0 through 7.4.2 and before 7.2.5, FortiAnalyzer version 7.4.0 through 7.4.2 and before 7.2.5 and FortiAnalyzer-BigData 7.4.0 and...Show more |
1Fortinet 3Fortianalyzer Fortianalyzer Big DataFortimanagerJun 17, 2026 Nov 12, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 A client-side enforcement of server-side security in Fortinet FortiAnalyzer-BigData at least version 7.4.0 and 7.2.0 through 7.2.6 and 7.0.1 through 7.0.6 and 6.4.5 through 6.4.7 and 6.2.5, FortiManager version 7.4.0 t...Show more |
1Fortinet 3Fortianalyzer Fortianalyzer Big DataFortimanagerJun 17, 2026 Nov 12, 2024 N/A· v4 4.1 MEDIUM· v3 N/A· v2 An exposure of sensitive information to an unauthorized actor [CWE-200] in Fortinet FortiManager before 7.4.2, FortiAnalyzer before 7.4.2 and FortiAnalyzer-BigData before 7.2.5 may allow a privileged attacker with admini...Show more |
1Fortinet 3Fortianalyzer Fortianalyzer Big DataFortimanagerJun 17, 2026 Sep 10, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 An authorization bypass through user-controlled key [CWE-639] vulnerability in FortiAnalyzer version 7.4.1 and before 7.2.5 and FortiManager version 7.4.1 and before 7.2.5 may allow a remote attacker with low privileges...Show more |
1Fortinet 4Fortianalyzer Fortianalyzer Big DataFortimanager+1 moreJun 17, 2026 Mar 12, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 A use of externally-controlled format string vulnerability [CWE-134] vulnerability in Fortinet allows a privileged attacker to execute unauthorized code or commands via specially crafted command arguments. |