Fortinet Fortisiem vulnerabilities
31 known vulnerabilities affecting fortinet/fortisiem.
Total CVEs
31
CISA KEV
0
Public exploits
4
Exploited in wild
4
Severity breakdown
CRITICAL8HIGH11MEDIUM10LOW2
Vulnerabilities
Page 1 of 2
CVE-2024-23108P1CRITICALCVSS 9.8ExploitedPoCRansomware≥ 6.4.0, ≤ 6.4.2≥ 6.5.0, ≤ 6.5.2+6 more2024-02-05
CVE-2024-23108 [CRITICAL] CWE-78 CVE-2024-23108: An improper neutralization of special elements used in an os command ('os command injection') vulner
An improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet allows attacker to execute unauthorized code or commands via via crafted API requests.
nvd
CVE-2025-25256P1CRITICALCVSS 9.8ExploitedPoC≥ 5.4.0, < 6.7.10≥ 7.0.0, < 7.0.4+15 more2025-08-12
CVE-2025-25256 [CRITICAL] CWE-78 CVE-2025-25256: An improper neutralization of special elements used in an OS command ('OS Command Injection') vulner
An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] in Fortinet FortiSIEM version 7.3.0 through 7.3.1, 7.2.0 through 7.2.5, 7.1.0 through 7.1.7, 7.0.0 through 7.0.3 and before 6.7.9 allows an unauthenticated attacker to execute unauthorized code or commands via crafted CLI requests.
nvd
CVE-2025-64155P1CRITICALCVSS 9.8ExploitedPoC≥ 6.7.0, < 7.1.9≥ 7.2.0, < 7.2.7+7 more2026-01-13
CVE-2025-64155 [CRITICAL] CWE-78 CVE-2025-64155: An improper neutralization of special elements used in an os command ('os command injection') vulner
An improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSIEM 7.4.0, FortiSIEM 7.3.0 through 7.3.4, FortiSIEM 7.1.0 through 7.1.8, FortiSIEM 7.0.0 through 7.0.4, FortiSIEM 6.7.0 through 6.7.10 may allow an attacker to execute unauthorized code or commands via crafted TCP requests.
nvd
CVE-2024-23109P1CRITICALCVSS 9.8ExploitedRansomware≥ 6.4.0, ≤ 6.4.2≥ 6.5.0, ≤ 6.5.2+5 more2024-02-05
CVE-2024-23109 [CRITICAL] CWE-78 CVE-2024-23109: An improper neutralization of special elements used in an os command ('os command injection') vulner
An improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet allows attacker to execute unauthorized code or commands via via crafted API requests.
nvd
CVE-2023-34992P1CRITICALCVSS 9.8PoC≥ 6.6.0, ≤ 6.6.3≥ 6.7.0, ≤ 6.7.5+8 more2023-10-10
CVE-2023-34992 [CRITICAL] CWE-78 CVE-2023-34992: A improper neutralization of special elements used in an os command ('os command injection') vulnera
A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet allows attacker to execute unauthorized code or commands via crafted API requests.
nvd
CVE-2023-36553P2CRITICALCVSS 9.8≥ 5.1.0, ≤ 5.1.3v4.7.2+19 more2023-11-14
CVE-2023-36553 [CRITICAL] CWE-78 CVE-2023-36553: A improper neutralization of special elements used in an os command ('os command injection') in Fort
A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiSIEM version 5.4.0 and 5.3.0 through 5.3.3 and 5.2.5 through 5.2.8 and 5.2.1 through 5.2.2 and 5.1.0 through 5.1.3 and 5.0.0 through 5.0.1 and 4.10.0 and 4.9.0 and 4.7.2 allows attacker to execute unauthorized code or commands via crafted A
nvd
CVE-2023-26204P2CRITICALCVSS 9.8≥ 5.3.0, ≤ 5.3.3≥ 6.3.0, ≤ 6.3.3+17 more2023-06-13
CVE-2023-26204 [CRITICAL] CWE-256 CVE-2023-26204: A plaintext storage of a password vulnerability [CWE-256] in FortiSIEM 6.7 all versions, 6.6 all ver
A plaintext storage of a password vulnerability [CWE-256] in FortiSIEM 6.7 all versions, 6.6 all versions, 6.5 all versions, 6.4 all versions, 6.3 all versions, 6.2 all versions, 6.1 all versions, 5.4 all versions, 5.3 all versions may allow an attacker able to access user DB content to impersonate any admin user on the device GUI.
nvd
CVE-2019-16153P3CRITICALCVSS 9.8≥ 5.0.0, ≤ 5.2.52020-01-23
CVE-2019-16153 [CRITICAL] CWE-798 CVE-2019-16153: A hard-coded password vulnerability in the Fortinet FortiSIEM database component version 5.2.5 and b
A hard-coded password vulnerability in the Fortinet FortiSIEM database component version 5.2.5 and below may allow attackers to access the device database via the use of static credentials.
nvd
CVE-2019-17659P3HIGHCVSS 8.1fixed in 5.2.7v5.2.62025-03-17
CVE-2019-17659 [HIGH] CWE-798 CVE-2019-17659: A use of hard-coded cryptographic key vulnerability in FortiSIEM version 5.2.6 may allow a remote un
A use of hard-coded cryptographic key vulnerability in FortiSIEM version 5.2.6 may allow a remote unauthenticated attacker to obtain SSH access to the supervisor as the restricted user "tunneluser" by leveraging knowledge of the private key from another installation or a firmware image.
nvd
CVE-2023-40714P3HIGHCVSS 8.8≥ 6.4.0, ≤ 6.5.1≥ 6.6.0, ≤ 6.6.3+3 more2025-04-02
CVE-2023-40714 [HIGH] CWE-23 CVE-2023-40714: A relative path traversal in Fortinet FortiSIEM versions 7.0.0, 6.7.0 through 6.7.2, 6.6.0 through 6
A relative path traversal in Fortinet FortiSIEM versions 7.0.0, 6.7.0 through 6.7.2, 6.6.0 through 6.6.3, 6.5.1, 6.5.0 allows attacker to escalate privilege via uploading certain GUI elements
nvd
CVE-2022-42478P3HIGHCVSS 8.8≥ 5.1.0, ≤ 5.1.3≥ 5.3.0, ≤ 5.3.3+30 more2023-06-13
CVE-2022-42478 [HIGH] CWE-307 CVE-2022-42478: An Improper Restriction of Excessive Authentication Attempts [CWE-307] in FortiSIEM below 7.0.0 may
An Improper Restriction of Excessive Authentication Attempts [CWE-307] in FortiSIEM below 7.0.0 may allow a non-privileged user with access to several endpoints to brute force attack these endpoints.
nvd
CVE-2023-40723P3HIGHCVSS 8.1≥ 5.1.0, < 6.4.2≥ 6.5.0, < 6.5.2+14 more2025-03-11
CVE-2023-40723 [HIGH] CWE-200 CVE-2023-40723: An exposure of sensitive information to an unauthorized actor in Fortinet FortiSIEM version 6.7.0 th
An exposure of sensitive information to an unauthorized actor in Fortinet FortiSIEM version 6.7.0 through 6.7.4 and 6.6.0 through 6.6.3 and 6.5.0 through 6.5.1 and 6.4.0 through 6.4.2 and 6.3.0 through 6.3.3 and 6.2.0 through 6.2.1 and 6.1.0 through 6.1.2 and 5.4.0 and 5.3.0 through 5.3.3 and 5.2.5 through 5.2.8 and 5.2.1 through 5.2.2 and 5.1.0 throu
nvd
CVE-2022-43949P3HIGHCVSS 7.5≥ 5.3.0, ≤ 5.3.3≥ 6.3.0, ≤ 6.3.3+19 more2023-06-13
CVE-2022-43949 [HIGH] CWE-327 CVE-2022-43949: A use of a broken or risky cryptographic algorithm [CWE-327] in Fortinet FortiSIEM before 6.7.1 all
A use of a broken or risky cryptographic algorithm [CWE-327] in Fortinet FortiSIEM before 6.7.1 allows a remote unauthenticated attacker to perform brute force attacks on GUI endpoints via taking advantage of outdated hashing methods.
nvd
CVE-2024-52969P3MEDIUMCVSS 6.5≥ 6.4.0, ≤ 7.1.7≥ 7.1.0, ≤ 7.1.7+4 more2025-01-14
CVE-2024-52969 [MEDIUM] CWE-89 CVE-2024-52969: An Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerabilit
An Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability [CWE-89] in FortiSIEM ersion 7.1.7 and below, version 7.1.0, version 7.0.3 and below, version 6.7.9 and below, 6.7.8, version 6.6.5 and below, version 6.5.3 and below, version 6.4.4 and below Update/Create Case feature may allow an authenticated atta
nvd
CVE-2019-17653P3HIGHCVSS 8.8v5.2.52020-03-12
CVE-2019-17653 [HIGH] CWE-352 CVE-2019-17653: A Cross-Site Request Forgery (CSRF) vulnerability in the user interface of Fortinet FortiSIEM 5.2.5
A Cross-Site Request Forgery (CSRF) vulnerability in the user interface of Fortinet FortiSIEM 5.2.5 could allow a remote, unauthenticated attacker to perform arbitrary actions using an authenticated user's session by persuading the victim to follow a malicious link.
nvd
CVE-2024-46667P3HIGHCVSS 7.5≥ 5.3.0, ≤ 5.3.3≥ 6.1.0, ≤ 6.1.2+10 more2025-01-14
CVE-2024-46667 [HIGH] CWE-770 CVE-2024-46667: A allocation of resources without limits or throttling in Fortinet FortiSIEM 5.3 all versions, 5.4 a
A allocation of resources without limits or throttling in Fortinet FortiSIEM 5.3 all versions, 5.4 all versions, 6.x all versions, 7.0 all versions, and 7.1.0 through 7.1.5 may allow an attacker to deny valid TLS traffic via consuming all allotted connections.
nvd
CVE-2026-59841P3HIGHCVSS 7.5≥ 7.4.0, < 7.4.22026-07-14
CVE-2026-59841 [HIGH] CWE-923 CVE-2026-59841: A improper restriction of communication channel to intended endpoints vulnerability in Fortinet Fort
A improper restriction of communication channel to intended endpoints vulnerability in Fortinet FortiSIEMWindowsAgent 7.4.0 through 7.4.1 may allow attacker to escalation of privilege via
nvd
CVE-2021-41022P3HIGHCVSS 7.8≥ 3.1.0, ≤ 4.1.42021-11-02
CVE-2021-41022 [HIGH] CWE-269 CVE-2021-41022: A improper privilege management in Fortinet FortiSIEM Windows Agent version 4.1.4 and below allows a
A improper privilege management in Fortinet FortiSIEM Windows Agent version 4.1.4 and below allows attacker to execute privileged code or commands via powershell scripts
nvd
CVE-2022-26119P3HIGHCVSS 7.8≥ 5.1.0, ≤ 5.1.3≥ 5.2.5, ≤ 5.2.8+12 more2022-11-02
CVE-2022-26119 [HIGH] CWE-798 CVE-2022-26119: A improper authentication vulnerability in Fortinet FortiSIEM before 6.5.0 allows a local attacker w
A improper authentication vulnerability in Fortinet FortiSIEM before 6.5.0 allows a local attacker with CLI access to perform operations on the Glassfish server directly via a hardcoded password.
nvd
CVE-2019-6700P3MEDIUMCVSS 6.5fixed in 5.2.52020-01-07
CVE-2019-6700 [MEDIUM] CWE-200 CVE-2019-6700: An information exposure vulnerability in the external authentication profile form of FortiSIEM 5.2.2
An information exposure vulnerability in the external authentication profile form of FortiSIEM 5.2.2 and earlier may allow an authenticated attacker to retrieve the external authentication password via the HTML source code.
nvd
1 / 2Next →