Known vulnerabilities in FortiDDoS
Vendor:
Fortinet, Inc
Software:
FortiDDoS
Software CPE:
cpe:2.3:a:fortinet:fortiddos:*:*:*:*:*:*:*:*
Website:
https://www.fortinet.com/
Total vulnerabilities:
4
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.2
Breakdown by Severity Chart
5.7.4
6.3.5
5.7.3
5.7.2
6.4.2
5.7.1
5.6.2
5.3.2
5.4.3
5.5.2
6.3.0
4.0.0
4.0.1
4.1.1
4.1.10
4.1.2
4.1.3
4.1.4
4.1.5
4.1.6
4.1.7
4.1.8
4.1.9
4.2.1
4.2.2
4.3.0
4.3.2
4.4.0
4.4.1
4.7.0
6.3.4
6.2.3
6.4.1
6.4.0
6.1.5
5.7.0
5.6.1
6.3.3
5.1.0
5.2.0
6.3.2
6.3.1
6.2.2
6.2.1
6.2.0
6.1.4
6.1.3
6.1.2
6.1.1
6.1.0
5.6.0
5.5.1
5.5.0
5.4.2
5.4.1
5.4.0
5.3.1
5.3.0
5.0.0
4.6.0
4.5.0
4.4.2
4.3.1
4.1.12
4.1.11
3.2.1
3.2.0
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU96012 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2022-27486 |
CWE-78 | Low | 5.6.2, 5.7.1 | 14.08.2024 |
SB2024081470 |
||
| #VU93513 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2024-6387 |
CWE-362 | High | 5.7.4 | 01.07.2024 |
SB2024070144 SB2024070145 SB2024070152 and 89 more |
||
| #VU74990 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2022-40679 |
CWE-78 | Low | 6.1.5, 6.2.3, 6.3.4, 6.4.1 | 11.04.2023 |
SB20230411107 |
||
| #VU64048 - Use of Hard-coded Cryptographic Key CVE-2022-29060 |
CWE-321 | High | 5.6.0 | 07.06.2022 |
SB2022060725 |