Forticlient Endpoint Management Server
forticlient_endpoint_management_server
Vendor: Fortinet • 6 CVEs
CVEs (6)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Fortinet 1Forticlient Endpoint Management Server Jun 17, 2026 Sep 10, 2024 N/A· v4 6.0 MEDIUM· v3 N/A· v2 A improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiClientEMS versions 7.2.0 through 7.2.4, 7.0.0 through 7.0.13, 6.4.0 through 6.4.9, 6.2.0 through 6.2.9, 6.0.0 through 6.0....Show more |
1Fortinet 1Forticlient Endpoint Management Server Jun 17, 2026 Mar 12, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 A improper neutralization of formula elements in a csv file in Fortinet FortiClientEMS version 7.2.0 through 7.2.2, 7.0.0 through 7.0.10, 6.4.0 through 6.4.9, 6.2.0 through 6.2.9, 6.0.0 through 6.0.8 allows attacker to e...Show more |
1Fortinet 1Forticlient Endpoint Management Server Jun 17, 2026 Sep 13, 2023 N/A· v4 5.3 MEDIUM· v3 N/A· v2 An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiClientEMS versions 7.0.0 through 7.0.4, 7.0.6 through 7.0.7, in all 6.4 and 6.2 version management interface may allow an unau...Show more |
1Fortinet 2Forticlient Forticlient Endpoint Management ServerJun 17, 2026 Dec 16, 2021 N/A· v4 7.5 HIGH· v3 5.4 MEDIUM· v2 A combination of a use of hard-coded cryptographic key vulnerability [CWE-321] in FortiClientEMS 7.0.1 and below, 6.4.6 and below and an improper certificate validation vulnerability [CWE-297] in FortiClientWindows, Fort...Show more |
1Fortinet 1Forticlient Endpoint Management Server Jun 17, 2026 Oct 6, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An insufficient session expiration vulnerability [CWE- 613] in FortiClientEMS versions 6.4.2 and below, 6.2.8 and below may allow an attacker to reuse the unexpired admin user session IDs to gain admin privileges, should...Show more |
1Fortinet 1Forticlient Endpoint Management Server Jun 17, 2026 Oct 6, 2021 N/A· v4 5.4 MEDIUM· v3 5.5 MEDIUM· v2 A path traversal vulnerability [CWE-22] in FortiClientEMS versions 6.4.1 and below; 6.2.8 and below may allow an authenticated attacker to inject directory traversal character sequences to add/delete the files of the ser...Show more |