cbcvebase.

Fortinet Fortivoice vulnerabilities

25 known vulnerabilities affecting fortinet/fortivoice.

Total CVEs
25
CISA KEV
1
actively exploited
Public exploits
2
Exploited in wild
1
Severity breakdown
CRITICAL4HIGH10MEDIUM11

Vulnerabilities

Page 1 of 2
CVE-2025-32756P1CRITICALCVSS 9.8KEVPoCRansomware≥ 6.4.0, < 6.4.11≥ 7.0.0, < 7.0.7+3 more2025-05-13
CVE-2025-32756 [CRITICAL] CWE-121 CVE-2025-32756: A stack-based buffer overflow vulnerability [CWE-121] vulnerability in Fortinet FortiCamera 2.1.0 th A stack-based buffer overflow vulnerability [CWE-121] vulnerability in Fortinet FortiCamera 2.1.0 through 2.1.3, FortiCamera 2.0 all versions, FortiCamera 1.1 all versions, FortiMail 7.6.0 through 7.6.2, FortiMail 7.4.0 through 7.4.4, FortiMail 7.2.0 through 7.2.7, FortiMail 7.0.0 through 7.0.8, FortiNDR 7.6.0, FortiNDR 7.4.0 through 7.4.7, FortiN
nvd
CVE-2020-9294P1CRITICALCVSS 9.8PoC≥ 6.0.0, ≤ 6.0.12020-04-27
CVE-2020-9294 [CRITICAL] CWE-287 CVE-2020-9294: An improper authentication vulnerability in FortiMail 5.4.10, 6.0.7, 6.2.2 and earlier and FortiVoic An improper authentication vulnerability in FortiMail 5.4.10, 6.0.7, 6.2.2 and earlier and FortiVoiceEntreprise 6.0.0 and 6.0.1 may allow a remote unauthenticated attacker to access the system as a legitimate user by requesting a password change via the user interface.
nvd
CVE-2024-48884P2CRITICALCVSS 9.1≥ 6.0.0, ≤ 6.4.10≥ 7.0.0, ≤ 7.0.52025-01-14
CVE-2024-48884 [CRITICAL] CWE-22 CVE-2024-48884: A improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fo A improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiManager 7.6.0 through 7.6.1, FortiManager 7.4.1 through 7.4.3, FortiManager Cloud 7.4.1 through 7.4.3, FortiOS 7.6.0, FortiOS 7.4.0 through 7.4.4, FortiOS 7.2.0 through 7.2.9, FortiOS 7.0.0 through 7.0.15, FortiOS 6.4.0 through 6.4.15, Fo
nvd
CVE-2025-60024P2HIGHCVSS 8.8≥ 7.0.0, < 7.0.8≥ 7.2.0, < 7.2.3+2 more2025-12-09
CVE-2025-60024 [HIGH] CWE-22 CVE-2025-60024: Multiple Improper Limitations of a Pathname to a Restricted Directory ('Path Traversal') vulnerabili Multiple Improper Limitations of a Pathname to a Restricted Directory ('Path Traversal') vulnerabilities [CWE-22] vulnerability in Fortinet FortiVoice 7.2.0 through 7.2.2, FortiVoice 7.0.0 through 7.0.7 may allow a privileged authenticated attacker to write arbitrary files via specifically HTTP or HTTPS commands
nvd
CVE-2025-58692P2HIGHCVSS 8.8≥ 7.0.0, < 7.0.8≥ 7.2.0, < 7.2.3+1 more2025-11-18
CVE-2025-58692 [HIGH] CWE-89 CVE-2025-58692: An improper neutralization of special elements used in an SQL Command ("SQL Injection") vulnerabilit An improper neutralization of special elements used in an SQL Command ("SQL Injection") vulnerability [CWE-89] vulnerability in Fortinet FortiVoice 7.2.0 through 7.2.2, FortiVoice 7.0.0 through 7.0.7 allows an authenticated attacker to execute unauthorized code or commands via specifically crafted HTTP or HTTPS requests.
nvd
CVE-2023-37931P3HIGHCVSS 8.8≥ 6.0.0, < 6.4.9≥ 7.0.0, < 7.0.2+3 more2025-01-14
CVE-2023-37931 [HIGH] CWE-89 CVE-2023-37931: An improper neutralization of special elements used in an sql command ('sql injection') vulnerabilit An improper neutralization of special elements used in an sql command ('sql injection') vulnerability [CWE-88] in FortiVoice Entreprise version 7.0.0 through 7.0.1 and before 6.4.8 allows an authenticated attacker to perform a blind sql injection attack via sending crafted HTTP or HTTPS requests
nvd
CVE-2024-48885P3CRITICALCVSS 9.1≥ 6.0.0, ≤ 6.4.10≥ 7.0.0, ≤ 7.0.5+1 more2025-01-16
CVE-2024-48885 [CRITICAL] CWE-22 CVE-2024-48885: A improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fo A improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiRecorder 7.2.0 through 7.2.1, FortiRecorder 7.0.0 through 7.0.4, FortiVoice 7.0.0 through 7.0.4, FortiVoice 6.4.0 through 6.4.9, FortiVoice 6.0 all versions, FortiWeb 7.6.0, FortiWeb 7.4.0 through 7.4.4, FortiWeb 7.2 all versions, FortiWe
nvd
CVE-2025-47856P3HIGHCVSS 7.2≥ 6.4.0, < 6.4.11≥ 7.0.0, < 7.0.7+3 more2025-10-14
CVE-2025-47856 [HIGH] CWE-78 CVE-2025-47856: Two improper neutralization of special elements used in an OS command ('OS Command Injection') vulne Two improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerabilities [CWE-78] in Fortinet FortiVoice version 7.2.0, 7.0.0 through 7.0.6 and before 6.4.10 allows a privileged attacker to execute arbitrary code or commands via crafted HTTP/HTTPS or CLI requests.
nvd
CVE-2025-64156P3HIGHCVSS 7.2≥ 6.0.0, ≤ 6.0.12≥ 6.4.0, ≤ 6.4.11+2 more2025-12-09
CVE-2025-64156 [HIGH] CWE-89 CVE-2025-64156: An improper neutralization of special elements used in an sql command ('sql injection') vulnerabilit An improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiVoice 7.2.0 through 7.2.2, FortiVoice 7.0.0 through 7.0.7, FortiVoice 6.4 all versions, FortiVoice 6.0 all versions may allow an authenticated privileged attacker to execute unauthorized code or commands via crafted requests
nvd
CVE-2022-27488P3HIGHCVSS 8.8≥ 6.0.0, ≤ 6.0.11≥ 6.4.0, ≤ 6.4.72023-12-13
CVE-2022-27488 [HIGH] CWE-352 CVE-2022-27488: A cross-site request forgery (CSRF) in Fortinet FortiVoiceEnterprise version 6.4.x, 6.0.x, FortiSwit A cross-site request forgery (CSRF) in Fortinet FortiVoiceEnterprise version 6.4.x, 6.0.x, FortiSwitch version 7.0.0 through 7.0.4, 6.4.0 through 6.4.10, 6.2.0 through 6.2.7, 6.0.x, FortiMail version 7.0.0 through 7.0.3, 6.4.0 through 6.4.6, 6.2.x, 6.0.x FortiRecorder version 6.4.0 through 6.4.2, 6.0.x, 2.7.x, 2.6.x, FortiNDR version 1.x.x allows a re
nvd
CVE-2024-26013P3HIGHCVSS 7.5≥ 6.0.0, < 6.4.9≥ 7.0.0, < 7.0.32025-04-08
CVE-2024-26013 [HIGH] CWE-923 CVE-2024-26013: A improper restriction of communication channel to intended endpoints vulnerability [CWE-923] in For A improper restriction of communication channel to intended endpoints vulnerability [CWE-923] in Fortinet FortiOS version 7.4.0 through 7.4.4, 7.2.0 through 7.2.8, 7.0.0 through 7.0.15, 6.4.0 through 6.4.15 and before 6.2.16, Fortinet FortiProxy version 7.4.0 through 7.4.2, 7.2.0 through 7.2.9 and before 7.0.15, Fortinet FortiManager version 7.4.0 thr
nvd
CVE-2024-50565P3HIGHCVSS 7.5≥ 6.0.0, < 6.4.9≥ 7.0.0, < 7.0.3+3 more2025-04-08
CVE-2024-50565 [HIGH] CWE-300 CVE-2024-50565: A improper restriction of communication channel to intended endpoints vulnerability [CWE-923] in For A improper restriction of communication channel to intended endpoints vulnerability [CWE-923] in Fortinet FortiOS version 7.4.0 through 7.4.3, 7.2.0 through 7.2.7, 7.0.0 through 7.0.14, 6.4.0 through 6.4.15 and 6.2.0 through 6.2.16, Fortinet FortiProxy version 7.4.0 through 7.4.2, 7.2.0 through 7.2.9, 7.0.0 through 7.0.15 and 2.0.0 through 2.0.14, For
nvd
CVE-2021-36193P3HIGHCVSS 7.2≥ 6.4.0, ≤ 6.4.4≥ 6.0.0, ≤ 6.0.102022-02-02
CVE-2021-36193 [HIGH] CWE-121 CVE-2021-36193: Multiple stack-based buffer overflows in the command line interpreter of FortiWeb before 6.4.2 may a Multiple stack-based buffer overflows in the command line interpreter of FortiWeb before 6.4.2 may allow an authenticated attacker to achieve arbitrary code execution via specially crafted commands.
nvd
CVE-2023-37932P3MEDIUMCVSS 6.5≥ 6.0.0, ≤ 6.0.12≥ 6.4.0, < 6.4.8+2 more2024-01-10
CVE-2023-37932 [MEDIUM] CWE-22 CVE-2023-37932: An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability [CWE An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability [CWE-22] in FortiVoiceEntreprise version 7.0.0 and before 6.4.7 allows an authenticated attacker to read arbitrary files from the system via sending crafted HTTP or HTTPS requests
nvd
CVE-2025-58693P3MEDIUMCVSS 6.5≥ 7.0.0, < 7.0.8≥ 7.2.0, < 7.2.3+2 more2026-01-13
CVE-2025-58693 [MEDIUM] CWE-22 CVE-2025-58693: An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in F An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiVoice 7.2.0 through 7.2.2, FortiVoice 7.0.0 through 7.0.7 allows a privileged attacker to delete files from the underlying filesystem via crafted HTTP or HTTPs requests.
nvd
CVE-2023-40720P3HIGHCVSS 7.1≥ 6.0.0, ≤ 6.0.12≥ 6.4.0, ≤ 6.4.8+3 more2024-05-14
CVE-2023-40720 [HIGH] CWE-639 CVE-2023-40720: An authorization bypass through user-controlled key vulnerability [CWE-639] in FortiVoiceEntreprise An authorization bypass through user-controlled key vulnerability [CWE-639] in FortiVoiceEntreprise version 7.0.0 through 7.0.1 and before 6.4.8 allows an authenticated attacker to read the SIP configuration of other users via crafted HTTP or HTTPS requests.
nvd
CVE-2024-40587P3MEDIUMCVSS 6.7≥ 6.0.0, < 6.4.10≥ 7.0.0, < 7.0.5+3 more2025-01-14
CVE-2024-40587 [MEDIUM] CWE-78 CVE-2024-40587: An improper neutralization of special elements used in an OS command ('OS Command Injection') vulner An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] in Fortinet FortiVoice version 7.0.0 through 7.0.4 and before 6.4.9 allows an authenticated privileged attacker to execute unauthorized code or commands via crafted CLI requests.
nvd
CVE-2022-23439P4MEDIUMCVSS 6.1≥ 6.0.0, < 6.4.9≥ 7.0.0, ≤ 7.0.1+2 more2025-01-22
CVE-2022-23439 [MEDIUM] CWE-610 CVE-2022-23439: A externally controlled reference to a resource in another sphere vulnerability in Fortinet allows A externally controlled reference to a resource in another sphere vulnerability in Fortinet allows attacker to poison web caches via crafted HTTP requests, where the `Host` header points to an arbitrary webserver
nvd
CVE-2021-42757P4MEDIUMCVSS 6.7≥ 6.0.0, ≤ 6.0.10≥ 6.4.0, ≤ 6.4.42021-12-08
CVE-2021-42757 [MEDIUM] CWE-120 CVE-2021-42757: A buffer overflow [CWE-121] in the TFTP client library of FortiOS before 6.4.7 and FortiOS 7.0.0 thr A buffer overflow [CWE-121] in the TFTP client library of FortiOS before 6.4.7 and FortiOS 7.0.0 through 7.0.2, may allow an authenticated local attacker to achieve arbitrary code execution via specially crafted command line arguments.
nvd
CVE-2021-24008P4MEDIUMCVSS 5.3≥ 6.0.0, < 6.0.72025-03-28
CVE-2021-24008 [MEDIUM] CWE-200 CVE-2021-24008: An exposure of sensitive system information to an unauthorized control sphere vulnerability [CWE-497 An exposure of sensitive system information to an unauthorized control sphere vulnerability [CWE-497] in FortiDDoS version 5.4.0, version 5.3.2 and below, version 5.2.0, version 5.1.0, version 5.0.0, version 4.7.0, version 4.6.0, version 4.5.0, version 4.4.2 and below, FortiDDoS-CM version 5.3.0, version 5.2.0, version 5.1.0, version 5.0.0, version
nvd
Fortinet Fortivoice vulnerabilities | cvebase