Forticlient Enterprise Management Server
forticlient_enterprise_management_server
Vendor: Fortinet • 7 CVEs
CVEs (7)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Fortinet 1Forticlient Enterprise Management Server Jun 17, 2026 Sep 10, 2024 N/A· v4 7.3 HIGH· v3 N/A· v2 An improper neutralization of special elements used in a command ('Command Injection') vulnerability [CWE-77] in Fortinet FortiClientEMS 7.2.0 through 7.2.4, 7.0.0 through 7.0.12 may allow an unauthenticated attacker to...Show more |
1Fortinet 1Forticlient Enterprise Management Server Jun 17, 2026 Mar 12, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiClientEMS version 7.2.0 through 7.2.2, FortiClientEMS 7.0.1 through 7.0.10 allows attacker to execute unauthorized c...Show more |
1Fortinet 1Forticlient Enterprise Management Server Jun 17, 2026 Feb 15, 2024 N/A· v4 7.2 HIGH· v3 N/A· v2 An improper privilege management vulnerability [CWE-269] in Fortinet FortiClientEMS version 7.2.0 through 7.2.2 and before 7.0.10 allows an Site administrator with Super Admin privileges to perform global administrative...Show more |
1Fortinet 1Forticlient Enterprise Management Server Jun 17, 2026 Dec 9, 2021 N/A· v4 4.9 MEDIUM· v3 4.0 MEDIUM· v2 A missing encryption of sensitive data in Fortinet FortiClientEMS version 7.0.1 and below, version 6.4.4 and below allows attacker to information disclosure via inspecting browser decrypted data |
1Fortinet 1Forticlient Enterprise Management Server Jun 17, 2026 Dec 8, 2021 N/A· v4 9.1 CRITICAL· v3 6.4 MEDIUM· v2 An authentication bypass by capture-replay vulnerability [CWE-294] in FortiClient EMS versions 7.0.1 and below and 6.4.4 and below may allow an unauthenticated attacker to impersonate an existing user by intercepting and...Show more |
1Fortinet 2Forticlient Forticlient Enterprise Management ServerJun 17, 2026 Dec 1, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 An unsafe search path vulnerability in FortiClientWindows 7.0.0, 6.4.6 and below, 6.2.x, 6.0.x and FortiClientEMS 7.0.0, 6.4.6 and below, 6.2.x, 6.0.x may allow an attacker to perform a DLL Hijack attack on affected devi...Show more |
1Fortinet 1Forticlient Enterprise Management Server Jun 17, 2026 Nov 2, 2021 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 An improper neutralization of input vulnerability [CWE-79] in FortiClientEMS versions 6.4.1 and below and 6.2.9 and below may allow a remote authenticated attacker to inject malicious script/tags via the name parameter o...Show more |