cbcvebase.

Fortinet Fortios vulnerabilities

282 known vulnerabilities affecting fortinet/fortios.

Total CVEs
282
CISA KEV
20
actively exploited
Public exploits
25
Exploited in wild
27
Severity breakdown
CRITICAL25HIGH88MEDIUM158LOW11

Vulnerabilities

Page 13 of 15
CVE-2025-62675P4MEDIUMCVSS 4.3≥ 7.2.0, < 7.6.5≥ 7.6.0, ≤ 7.6.4+4 more2026-07-14
CVE-2025-62675 [MEDIUM] CWE-113 CVE-2025-62675: An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') vulnerabili An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') vulnerability [CWE-113] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.4, FortiOS 7.4 all versions, FortiOS 7.2 all versions, FortiProxy 7.6.0 through 7.6.4, FortiProxy 7.4 all versions, FortiProxy 7.2 all versions may allow an attacker in possession of a v
nvd
CVE-2017-14187P4MEDIUMCVSS 6.2≤ 5.2.0≥ 5.4.0, ≤ 5.4.8+1 more2018-05-24
CVE-2017-14187 [MEDIUM] CWE-269 CVE-2017-14187: A local privilege escalation and local code execution vulnerability in Fortinet FortiOS 5.6.0 to 5.6 A local privilege escalation and local code execution vulnerability in Fortinet FortiOS 5.6.0 to 5.6.2, 5.4.0 to 5.4.8, and 5.2 and below versions allows attacker to execute unauthorized binary program contained on an USB drive plugged into a FortiGate via linking the aforementioned binary program to a command that is allowed to be run by the fnsysc
nvd
CVE-2018-13366P4MEDIUMCVSS 5.3≤ 5.6.7v6.0.0+1 more2019-04-09
CVE-2018-13366 [MEDIUM] CWE-200 CVE-2018-13366: An information disclosure vulnerability in Fortinet FortiOS 6.0.1, 5.6.7 and below allows attacker t An information disclosure vulnerability in Fortinet FortiOS 6.0.1, 5.6.7 and below allows attacker to reveals serial number of FortiGate via hostname field defined in connection control setup packets of PPTP protocol.
nvd
CVE-2021-43080P4MEDIUMCVSS 5.4≥ 6.4.0, < 6.4.10≥ 7.0.0, < 7.0.6+1 more2022-09-06
CVE-2021-43080 [MEDIUM] CWE-79 CVE-2021-43080: An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiOS ver An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiOS version 7.2.0, version 6.4.0 through 6.4.9, version 7.0.0 through 7.0.5 may allow an authenticated attacker to perform a stored cross site scripting (XSS) attack through the URI parameter via the Threat Feed IP address section of the Security Fabric Exter
nvd
CVE-2025-58903P4MEDIUMCVSS 4.9≥ 6.4.0, < 7.4.9≥ 7.6.0, < 7.6.4+5 more2025-10-14
CVE-2025-58903 [MEDIUM] CWE-252 CVE-2025-58903: An Unchecked Return Value vulnerability [CWE-252] in Fortinet FortiOS version 7.6.0 through 7.6.3 an An Unchecked Return Value vulnerability [CWE-252] in Fortinet FortiOS version 7.6.0 through 7.6.3 and before 7.4.8 API allows an authenticated user to cause a Null Pointer Dereference, crashing the http daemon via a specialy crafted request.
nvd
CVE-2017-14190P4MEDIUMCVSS 6.1≤ 5.2.0≥ 5.4.0, ≤ 5.4.7+1 more2018-01-29
CVE-2017-14190 [MEDIUM] CWE-79 CVE-2017-14190: A Cross-site Scripting vulnerability in Fortinet FortiOS 5.6.0 to 5.6.2, 5.4.0 to 5.4.7, 5.2 and ear A Cross-site Scripting vulnerability in Fortinet FortiOS 5.6.0 to 5.6.2, 5.4.0 to 5.4.7, 5.2 and earlier, allows attacker to inject arbitrary web script or HTML via maliciously crafted "Host" header in user HTTP requests.
nvd
CVE-2019-5593P4MEDIUMCVSS 5.5≤ 5.6.10≥ 6.0.0, ≤ 6.0.6+1 more2020-01-23
CVE-2019-5593 [MEDIUM] CWE-755 CVE-2019-5593: Improper permission or value checking in the CLI console may allow a non-privileged user to obtain F Improper permission or value checking in the CLI console may allow a non-privileged user to obtain Fortinet FortiOS plaint text private keys of system's builtin local certificates via unsetting the keys encryption password in FortiOS 6.2.0, 6.0.0 to 6.0.6, 5.6.10 and below or for user uploaded local certificates via setting an empty password in FortiO
nvd
CVE-2023-46715P4MEDIUMCVSS 4.3≥ 6.2.0, < 7.4.2≥ 7.4.0, ≤ 7.4.1+4 more2025-01-14
CVE-2023-46715 [MEDIUM] CWE-346 CVE-2023-46715: An origin validation error [CWE-346] vulnerability in Fortinet FortiOS IPSec VPN version 7.4.0 thro An origin validation error [CWE-346] vulnerability in Fortinet FortiOS IPSec VPN version 7.4.0 through 7.4.1 and version 7.2.6 and below allows an authenticated IPSec VPN user with dynamic IP addressing to send (but not receive) packets spoofing the IP of another user via crafted network packets.
nvd
CVE-2024-33510P4MEDIUMCVSS 4.3≥ 7.0.0, < 7.2.9≥ 7.4.0, < 7.4.4+3 more2024-11-12
CVE-2024-33510 [MEDIUM] CWE-358 CVE-2024-33510: An improper neutralization of special elements in output used by a downstream component ('Injection' An improper neutralization of special elements in output used by a downstream component ('Injection') vulnerability [CWE-74] in FortiOS version 7.4.3 and below, version 7.2.8 and below, version 7.0.16 and below; FortiProxy version 7.4.3 and below, version 7.2.9 and below, version 7.0.16 and below; FortiSASE version 24.2.b SSL-VPN web user interface
nvd
CVE-2025-25250P4MEDIUMCVSS 4.3≥ 6.4.0, < 7.4.8v7.6.0+4 more2025-06-10
CVE-2025-25250 [MEDIUM] CWE-200 CVE-2025-25250: An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] vulnerability An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] vulnerability in Fortinet FortiOS 7.6.0, FortiOS 7.4.0 through 7.4.7, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions, FortiSASE 25.1.c may allow an authenticated user to access full SSL-VPN settings via crafted URL.
nvd
CVE-2021-43074P4MEDIUMCVSS 4.3≥ 6.0.0, < 6.4.9≥ 7.0.0, < 7.0.4+4 more2023-02-16
CVE-2021-43074 [MEDIUM] CWE-347 CVE-2021-43074: An improper verification of cryptographic signature vulnerability [CWE-347] in FortiWeb 6.4 all vers An improper verification of cryptographic signature vulnerability [CWE-347] in FortiWeb 6.4 all versions, 6.3.16 and below, 6.2 all versions, 6.1 all versions, 6.0 all versions; FortiOS 7.0.3 and below, 6.4.8 and below, 6.2 all versions, 6.0 all versions; FortiSwitch 7.0.3 and below, 6.4.10 and below, 6.2 all versions, 6.0 all versions; FortiProxy 7
nvd
CVE-2017-7734P4MEDIUMCVSS 5.4v5.4.0v5.4.1+3 more2017-09-12
CVE-2017-7734 [MEDIUM] CWE-79 CVE-2017-7734: A Cross-Site Scripting vulnerability in Fortinet FortiOS versions 5.4.0 through 5.4.4 allows attacke A Cross-Site Scripting vulnerability in Fortinet FortiOS versions 5.4.0 through 5.4.4 allows attackers to execute unauthorized code or commands via 'Comments' while saving Config Revisions.
nvd
CVE-2023-29178P4MEDIUMCVSS 4.3≥ 6.0.0, ≤ 6.0.17≥ 6.2.0, ≤ 6.2.15+3 more2023-06-13
CVE-2023-29178 [MEDIUM] CWE-824 CVE-2023-29178: A access of uninitialized pointer vulnerability [CWE-824] in Fortinet FortiProxy version 7.2.0 thro A access of uninitialized pointer vulnerability [CWE-824] in Fortinet FortiProxy version 7.2.0 through 7.2.3 and before 7.0.9 and FortiOS version 7.2.0 through 7.2.4 and before 7.0.11 allows an authenticated attacker to repetitively crash the httpsd process via crafted HTTP or HTTPS requests.
nvd
CVE-2022-23442P4MEDIUMCVSS 4.3≥ 6.2.0, ≤ 6.2.11≥ 6.4.0, ≤ 6.4.8+1 more2022-08-03
CVE-2022-23442 [MEDIUM] CVE-2022-23442: An improper access control vulnerability [CWE-284] in FortiOS versions 6.2.0 through 6.2.11, 6.4.0 t An improper access control vulnerability [CWE-284] in FortiOS versions 6.2.0 through 6.2.11, 6.4.0 through 6.4.8 and 7.0.0 through 7.0.5 may allow an authenticated attacker with a restricted user profile to gather the checksum information about the other VDOMs via CLI commands.
nvd
CVE-2023-33301P4MEDIUMCVSS 4.3≥ 7.2.0, ≤ 7.2.4v7.4.02023-10-10
CVE-2023-33301 [MEDIUM] CWE-284 CVE-2023-33301: An improper access control vulnerability in Fortinet FortiOS 7.2.0 - 7.2.4 and 7.4.0 allows an attac An improper access control vulnerability in Fortinet FortiOS 7.2.0 - 7.2.4 and 7.4.0 allows an attacker to access a restricted resource from a non trusted host.
nvd
CVE-2025-31514P4MEDIUMCVSS 4.3≥ 6.4.0, < 7.6.4≥ 7.6.0, ≤ 7.6.2+4 more2025-10-14
CVE-2025-31514 [MEDIUM] CWE-532 CVE-2025-31514: A insertion of sensitive information into log file vulnerability in Fortinet FortiOS 7.6.0 through 7 A insertion of sensitive information into log file vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4 all versions, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions, FortiProxy 7.6.0 through 7.6.3, FortiProxy 7.4.0 through 7.4.13, FortiProxy 7.2 all versions, FortiProxy 7.0 all versions may allow attacker
nvd
CVE-2024-40593P4MEDIUMCVSS 4.4v7.0.14v7.2.7+2 more2025-12-11
CVE-2024-40593 [MEDIUM] CWE-320 CVE-2024-40593: A key management errors vulnerability in Fortinet FortiAnalyzer 7.4.0 through 7.4.2, FortiAnalyzer 7 A key management errors vulnerability in Fortinet FortiAnalyzer 7.4.0 through 7.4.2, FortiAnalyzer 7.2.0 through 7.2.5, FortiAnalyzer 7.0 all versions, FortiAnalyzer 6.4 all versions, FortiManager 7.4.0 through 7.4.2, FortiManager 7.2.0 through 7.2.5, FortiManager 7.0 all versions, FortiManager 6.4 all versions, FortiOS 7.6.0, FortiOS 7.4.4, FortiOS
nvd
CVE-2014-0351P4MEDIUMCVSS 5.4≤ 4.3.15v4.3.10+9 more2014-09-10
CVE-2014-0351 [MEDIUM] CWE-310 CVE-2014-0351: The FortiManager protocol service in Fortinet FortiOS before 4.3.16 and 5.x before 5.0.8 on FortiGat The FortiManager protocol service in Fortinet FortiOS before 4.3.16 and 5.x before 5.0.8 on FortiGate devices does not prevent use of anonymous ciphersuites, which makes it easier for man-in-the-middle attackers to obtain sensitive information or interfere with communications by modifying the client-server data stream.
nvd
CVE-2022-42469P4MEDIUMCVSS 4.3≥ 7.0.0, < 7.0.11≥ 7.2.0, < 7.2.4+2 more2023-04-11
CVE-2022-42469 [MEDIUM] CWE-183 CVE-2022-42469: A permissive list of allowed inputs vulnerability [CWE-183] in FortiGate version 7.2.3 and below, ve A permissive list of allowed inputs vulnerability [CWE-183] in FortiGate version 7.2.3 and below, version 7.0.9 and below Policy-based NGFW Mode may allow an authenticated SSL-VPN user to bypass the policy via bookmarks in the web portal.
nvd
CVE-2025-62439P4MEDIUMCVSS 4.2≥ 7.6.0, ≤ 7.6.4≥ 7.4.0, ≤ 7.4.9+2 more2026-02-10
CVE-2025-62439 [MEDIUM] CWE-940 CVE-2025-62439: An Improper Verification of Source of a Communication Channel vulnerability [CWE-940] vulnerability An Improper Verification of Source of a Communication Channel vulnerability [CWE-940] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.4, FortiOS 7.4.0 through 7.4.9, FortiOS 7.2 all versions, FortiOS 7.0 all versions may allow an authenticated user with knowledge of FSSO policy configurations to gain unauthorized access to protected network resou
nvd
Fortinet Fortios vulnerabilities | cvebase