Fortinet Fortios vulnerabilities
282 known vulnerabilities affecting fortinet/fortios.
Total CVEs
282
CISA KEV
20
actively exploited
Public exploits
25
Exploited in wild
27
Severity breakdown
CRITICAL25HIGH88MEDIUM158LOW11
Vulnerabilities
Page 11 of 15
CVE-2018-9192P4MEDIUMCVSS 5.9≥ 5.4.6, ≤ 5.4.9v6.0.0+1 more2018-09-05
CVE-2018-9192 [MEDIUM] CWE-203 CVE-2018-9192: A plaintext recovery of encrypted messages or a Man-in-the-middle (MiTM) attack on RSA PKCS #1 v1.5
A plaintext recovery of encrypted messages or a Man-in-the-middle (MiTM) attack on RSA PKCS #1 v1.5 encryption may be possible without knowledge of the server's private key. Fortinet FortiOS 5.4.6 to 5.4.9, 6.0.0 and 6.0.1 are vulnerable by such attack under SSL Deep Inspection feature when CPx being used.
nvd
CVE-2024-26006P4MEDIUMCVSS 6.1≥ 6.4.0, < 7.0.14≥ 7.2.0, < 7.2.8+5 more2025-03-14
CVE-2024-26006 [MEDIUM] CWE-79 CVE-2024-26006: An improper neutralization of input during web page Generation vulnerability [CWE-79] in FortiOS ver
An improper neutralization of input during web page Generation vulnerability [CWE-79] in FortiOS version 7.4.3 and below, version 7.2.7 and below, version 7.0.13 and below and FortiProxy version 7.4.3 and below, version 7.2.9 and below, version 7.0.16 and below web SSL VPN UI may allow a remote unauthenticated attacker to perform a Cross-Site Scripti
nvd
CVE-2016-7541P4MEDIUMCVSS 5.9v5.0.0v5.0.1+25 more2017-03-30
CVE-2016-7541 [MEDIUM] CWE-254 CVE-2016-7541: Long lived sessions in Fortinet FortiGate devices with FortiOS 5.x before 5.4.0 could violate a secu
Long lived sessions in Fortinet FortiGate devices with FortiOS 5.x before 5.4.0 could violate a security policy during IPS signature updates when the FortiGate's IPSengine is configured in flow mode. All FortiGate versions with IPS configured in proxy mode (the default mode) are not affected.
nvd
CVE-2022-38378P4MEDIUMCVSS 6.0≥ 6.0.0, < 7.0.8≥ 7.2.0, < 7.2.1+5 more2023-02-16
CVE-2022-38378 [MEDIUM] CWE-269 CVE-2022-38378: An improper privilege management vulnerability [CWE-269] in Fortinet FortiOS version 7.2.0 and befor
An improper privilege management vulnerability [CWE-269] in Fortinet FortiOS version 7.2.0 and before 7.0.7 and FortiProxy version 7.2.0 through 7.2.1 and before 7.0.7 allows an attacker that has access to the admin profile section (System subsection Administrator Users) to modify their own profile and upgrade their privileges to Read Write via CLI
nvd
CVE-2018-13367P4MEDIUMCVSS 5.3≤ 6.2.0v6.2.3+1 more2019-08-23
CVE-2018-13367 [MEDIUM] CWE-200 CVE-2018-13367: An information exposure vulnerability in FortiOS 6.2.3, 6.2.0 and below may allow an unauthenticated
An information exposure vulnerability in FortiOS 6.2.3, 6.2.0 and below may allow an unauthenticated attacker to gain platform information such as version, models, via parsing a JavaScript file through admin webUI.
nvd
CVE-2024-36505P4MEDIUMCVSS 5.5≥ 6.4.13, ≤ 6.4.15≥ 7.0.12, < 7.0.15+5 more2024-08-13
CVE-2024-36505 [MEDIUM] CWE-284 CVE-2024-36505: An improper access control vulnerability [CWE-284] in FortiOS 7.4.0 through 7.4.3, 7.2.5 through 7.2
An improper access control vulnerability [CWE-284] in FortiOS 7.4.0 through 7.4.3, 7.2.5 through 7.2.7, 7.0.12 through 7.0.14 and 6.4.x may allow an attacker who has already successfully obtained write access to the underlying system (via another hypothetical exploit) to bypass the file integrity checking system.
nvd
CVE-2015-2323P4MEDIUMCVSS 6.4v5.0.0v5.0.1+14 more2015-08-11
CVE-2015-2323 [MEDIUM] CWE-310 CVE-2015-2323: FortiOS 5.0.x before 5.0.12 and 5.2.x before 5.2.4 supports anonymous, export, RC4, and possibly oth
FortiOS 5.0.x before 5.0.12 and 5.2.x before 5.2.4 supports anonymous, export, RC4, and possibly other weak ciphers when using TLS to connect to FortiGuard servers, which allows man-in-the-middle attackers to spoof TLS content by modifying packets.
nvd
CVE-2018-13384P4MEDIUMCVSS 6.1fixed in 6.0.52019-06-04
CVE-2018-13384 [MEDIUM] CWE-601 CVE-2018-13384: A Host Header Redirection vulnerability in Fortinet FortiOS all versions below 6.0.5 under SSL VPN w
A Host Header Redirection vulnerability in Fortinet FortiOS all versions below 6.0.5 under SSL VPN web portal allows a remote attacker to potentially poison HTTP cache and subsequently redirect SSL VPN web portal users to arbitrary web domains.
nvd
CVE-2021-43081P4MEDIUMCVSS 6.1≥ 6.0.0, ≤ 6.0.14≥ 6.2.0, ≤ 6.2.10+2 more2022-05-11
CVE-2021-43081 [MEDIUM] CWE-79 CVE-2021-43081: An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiOS ver
An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiOS version 7.0.3 and below, 6.4.8 and below, 6.2.10 and below, 6.0.14 to 6.0.0. and in FortiProxy version 7.0.1 and below, 2.0.7 to 2.0.0 web filter override form may allow an unauthenticated attacker to perform an XSS attack via crafted HTTP GET requests.
nvd
CVE-2022-41330P4MEDIUMCVSS 6.1≥ 6.2.0, < 6.2.13≥ 6.4.0, < 6.4.12+6 more2023-04-11
CVE-2022-41330 [MEDIUM] CWE-79 CVE-2022-41330: An improper neutralization of input during web page generation vulnerability ('Cross-site Scripting'
An improper neutralization of input during web page generation vulnerability ('Cross-site Scripting') [CWE-79] in Fortinet FortiOS version 7.2.0 through 7.2.3, version 7.0.0 through 7.0.9, version 6.4.0 through 6.4.11 and before 6.2.12 and FortiProxy version 7.2.0 through 7.2.1 and before 7.0.7 allows an unauthenticated attacker to perform an XSS att
nvd
CVE-2023-29183P4MEDIUMCVSS 5.4≥ 6.2.0, < 6.2.15≥ 6.4.0, < 6.4.13+6 more2023-09-13
CVE-2023-29183 [MEDIUM] CWE-79 CVE-2023-29183: An improper neutralization of input during web page generation ('Cross-site Scripting') vulnerabilit
An improper neutralization of input during web page generation ('Cross-site Scripting') vulnerability [CWE-79] in FortiProxy 7.2.0 through 7.2.4, 7.0.0 through 7.0.10 and FortiOS 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 through 6.4.12, 6.2.0 through 6.2.14 GUI may allow an authenticated attacker to trigger malicious JavaScript code execution
nvd
CVE-2020-29010P4MEDIUMCVSS 5.0≥ 6.0.0, < 6.0.11≥ 6.2.0, < 6.2.5+2 more2025-03-17
CVE-2020-29010 [MEDIUM] CWE-200 CVE-2020-29010: An exposure of sensitive information to an unauthorized actor vulnerability in FortiOS version 6.2.4
An exposure of sensitive information to an unauthorized actor vulnerability in FortiOS version 6.2.4 and below, version 6.0.10 and belowmay allow remote authenticated actors to read the SSL VPN events log entries of users in other VDOMs by executing "get vpn ssl monitor" from the CLI. The sensitive data includes usernames, user groups, and IP addres
nvd
CVE-2023-45586P4MEDIUMCVSS 5.0≥ 6.2.0, ≤ 6.2.16≥ 6.4.0, ≤ 6.4.15+7 more2024-05-14
CVE-2023-45586 [MEDIUM] CWE-345 CVE-2023-45586: An insufficient verification of data authenticity vulnerability [CWE-345] in Fortinet FortiOS SSL-VP
An insufficient verification of data authenticity vulnerability [CWE-345] in Fortinet FortiOS SSL-VPN tunnel mode version 7.4.0 through 7.4.1, version 7.2.0 through 7.2.7 and before 7.0.12 & FortiProxy SSL-VPN tunnel mode version 7.4.0 through 7.4.1, version 7.2.0 through 7.2.7 and before 7.0.13 allows an authenticated VPN user to send (but not rece
nvd
CVE-2023-47537P4MEDIUMCVSS 4.8≥ 7.0.0, < 7.0.14≥ 7.2.0, ≤ 7.2.6+5 more2024-02-15
CVE-2023-47537 [MEDIUM] CWE-295 CVE-2023-47537: An improper certificate validation vulnerability in Fortinet FortiOS 7.4.0 through 7.4.1, FortiOS 7.
An improper certificate validation vulnerability in Fortinet FortiOS 7.4.0 through 7.4.1, FortiOS 7.2.0 through 7.2.6, FortiOS 7.0.0 through 7.0.15, FortiOS 6.4 all versions allows a remote and unauthenticated attacker to perform a Man-in-the-Middle attack on the FortiLink communication channel between the FortiOS device and FortiSwitch.
nvd
CVE-2023-29175P4MEDIUMCVSS 4.8≥ 6.0.0, ≤ 6.0.17≥ 6.2.0, ≤ 6.2.15+4 more2023-06-13
CVE-2023-29175 [MEDIUM] CWE-295 CVE-2023-29175: An improper certificate validation vulnerability [CWE-295] in FortiOS 6.2 all versions, 6.4 all vers
An improper certificate validation vulnerability [CWE-295] in FortiOS 6.2 all versions, 6.4 all versions, 7.0.0 through 7.0.10, 7.2.0 and FortiProxy 1.2 all versions, 2.0 all versions, 7.0.0 through 7.0.9, 7.2.0 through 7.2.3 may allow a remote and unauthenticated attacker to perform a Man-in-the-Middle attack on the communication channel between th
nvd
CVE-2025-62826P4MEDIUMCVSS 4.3≥ 7.2.0, < 7.6.5≥ 7.6.0, ≤ 7.6.2+4 more2026-07-14
CVE-2025-62826 [MEDIUM] CWE-113 CVE-2025-62826: An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') vulnerabili
An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') vulnerability [CWE-113] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.4, FortiOS 7.4 all versions, FortiOS 7.2 all versions, FortiProxy 7.6.0 through 7.6.4, FortiProxy 7.4 all versions, FortiProxy 7.2 all versions may allow an attacker able to intercept an
nvd
CVE-2017-7733P4MEDIUMCVSS 6.1v5.4.0v5.4.1+5 more2017-10-27
CVE-2017-7733 [MEDIUM] CWE-79 CVE-2017-7733: A Cross-Site-Scripting (XSS) vulnerability in Fortinet FortiOS 5.4.0 to 5.4.5 and 5.6.0 allows a rem
A Cross-Site-Scripting (XSS) vulnerability in Fortinet FortiOS 5.4.0 to 5.4.5 and 5.6.0 allows a remote unauthenticated attacker to execute arbitrary javascript code via webUI "Login Disclaimer" redir parameter.
nvd
CVE-2017-7739P4MEDIUMCVSS 6.1v5.2.0v5.2.1+17 more2017-11-13
CVE-2017-7739 [MEDIUM] CWE-79 CVE-2017-7739: A reflected Cross-site Scripting (XSS) vulnerability in web proxy disclaimer response web pages in F
A reflected Cross-site Scripting (XSS) vulnerability in web proxy disclaimer response web pages in Fortinet FortiOS 5.6.0, 5.4.0 to 5.4.5, 5.2.0 to 5.2.11 allows an unauthenticated attacker to inject arbitrary web script or HTML in the context of the victim's browser via sending a maliciously crafted URL to the victim.
nvd
CVE-2020-15937P4MEDIUMCVSS 6.1≥ 6.2.0, < 6.2.5≥ 6.4.0, < 6.4.12021-03-03
CVE-2020-15937 [MEDIUM] CWE-79 CVE-2020-15937: An improper neutralization of input vulnerability in FortiGate version 6.2.x below 6.2.5 and 6.4.x b
An improper neutralization of input vulnerability in FortiGate version 6.2.x below 6.2.5 and 6.4.x below 6.4.1 may allow a remote attacker to perform a stored cross site scripting attack (XSS) via the IPS and WAF logs dashboard.
nvd
CVE-2022-23438P4MEDIUMCVSS 6.1≤ 6.4.9≥ 7.0.0, ≤ 7.0.52022-07-18
CVE-2022-23438 [MEDIUM] CWE-79 CVE-2022-23438: An improper neutralization of input during web page generation ('Cross-site Scripting') [CWE-79] vul
An improper neutralization of input during web page generation ('Cross-site Scripting') [CWE-79] vulnerability in FortiOS version 7.0.5 and prior and 6.4.9 and prior may allow an unauthenticated remote attacker to perform a reflected cross site scripting (XSS) attack in the captive portal authentication replacement page.
nvd