Fortinet Fortidlp vulnerabilities
4 known vulnerabilities affecting fortinet/fortidlp.
Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2025-53951HIGHCVSS 7.8v11.5.1≥ 11.4.2, ≤ 11.4.6+8 more2025-10-16
CVE-2025-53951 [MEDIUM] CWE-22 CVE-2025-53951: An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability [CWE
An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability [CWE-22] in Fortinet FortiDLP Agent's Outlookproxy plugin for Windows 11.5.1 and 11.4.2 through 11.4.6 and 11.3.2 through 11.3.4 and 11.2.0 through 11.2.3 and 11.1.1 through 11.1.2 and 11.0.1 and 10.5.1 and 10.4.0, and 10.3.1 may allow an authenticated att
cvelistv5nvd
CVE-2025-54658HIGHCVSS 7.8v11.5.1≥ 11.4.2, ≤ 11.4.6+8 more2025-10-16
CVE-2025-54658 [HIGH] CWE-22 CVE-2025-54658: An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability [CWE
An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability [CWE-22] in Fortinet FortiDLP Agent's Outlookproxy plugin for MacOS 11.5.1 and 11.4.2 through 11.4.6 and 11.3.2 through 11.3.4 and 11.2.0 through 11.2.3 and 11.1.1 through 11.1.2 and 11.0.1 and 10.5.1 and 10.4.0, and 10.3.1 may allow an authenticated attacke
cvelistv5nvd
CVE-2025-53950MEDIUMCVSS 6.0v11.5.1≥ 11.4.2, ≤ 11.4.6+8 more2025-10-16
CVE-2025-53950 [MEDIUM] CWE-359 CVE-2025-53950: An Exposure of Private Personal Information ('Privacy Violation') vulnerability [CWE-359] in Fortine
An Exposure of Private Personal Information ('Privacy Violation') vulnerability [CWE-359] in Fortinet FortiDLP Agent's Outlookproxy plugin for MacOS and Windows 11.5.1 and 11.4.2 through 11.4.6 and 11.3.2 through 11.3.4 and 11.2.0 through 11.2.3 and 11.1.1. through 11.1.2 and 11.0.1 and 10.5.1 and 10.4.0, and 10.3.1 may allow an authenticated admini
cvelistv5nvd
CVE-2025-46752MEDIUMCVSS 4.4≥ 12.0.4, ≤ 12.0.5v12.0.2+3 more2025-10-16
CVE-2025-46752 [MEDIUM] CWE-532 CVE-2025-46752: A insertion of sensitive information into log file in Fortinet FortiDLP 12.0.0 through 12.0.5, 11.5.
A insertion of sensitive information into log file in Fortinet FortiDLP 12.0.0 through 12.0.5, 11.5.1, 11.4.6, 11.4.5 allows attacker to information disclosure via re-using the enrollment code.
cvelistv5nvd