Known vulnerabilities in Fortinet, Inc FortiOS 7.4.3

Vendor: Fortinet, Inc
Website: https://www.fortinet.com/
Total Security Bulletins: 40

Security bulletins (40)

Secuity bulletin Severity Status Published
SB2025081299: Integer overflow in Fortinet products Low
Patched
12.08.2025
SB2025070845: Heap-based buffer overflow in FortiOS Low
Patched
08.07.2025
SB2025070844: Missing critical step in authentication in FortiOS and FortiProxy Low
Patched
08.07.2025
SB2025070843: Improperly implemented security check for standard in FortiOS and FortiProxy Medium
Patched
08.07.2025
SB2025061119: Improper privilege management in Fortinet products Low
Patched
11.06.2025
SB2025061116: Improper certificate validation in FortiOS Low
Patched
11.06.2025
SB2025061115: Authentication bypass using an alternate path or channel in FortiOS and FortiProxy Low
Patched
11.06.2025
SB2025061113: Insufficient Session Expiration in FortiOS Medium
Patched
11.06.2025
SB2025061112: Improper restriction of communication channel to intended endpoints in FortiOS Low
Patched
11.06.2025
SB2025061110: Man-in-the-Middle (MitM) attack in FortiOS and FortiProxy Medium
Patched
11.06.2025
SB2025061107: Incomplete cleanup in FortiOS and FortiProxy Low
Patched
11.06.2025
SB2025061106: Information disclosure in FortiOS Low
Patched
11.06.2025
SB2025051360: Buffer over-read in FortiOS Low
Patched
13.05.2025
SB2025041107: Allocation of Resources Without Limits or Throttling in FortiOS Medium
Patched
11.04.2025
SB2025041046: Multiple vulnerabilities in Fortinet products High
Patched
10.04.2025
SB2025041045: Allocation of Resources Without Limits or Throttling in FortiOS Medium
Patched
10.04.2025
SB2025041026: Null pointer dereference in FortiOS Medium
Patched Public exploit
10.04.2025
SB2025040986: IP address spoofing in FortiOS Low
Patched
09.04.2025
SB2025040985: Authenticated denial of service in FortiOS SSL VPN Medium
Patched
09.04.2025
SB2025040963: LDAP credentials exposure in FortiOS Low
Patched
09.04.2025
SB2025040907: MitM attack in FortiOS High
Patched
09.04.2025
SB2025031208: Privilege escalation in FortiOS Low
Patched
12.03.2025
SB20250211168: Incorrect privilege assignment in FortiOS Low
Patched
11.02.2025
SB20250211102: Remote code execution in FortiOS CAPWAP control Critical
Patched
11.02.2025
SB2025012295: Remote denial of service in FortiOS IPsec Low
Patched
22.01.2025
SB2025011651: Multiple path traversal vulnerabilities in FortiOS Medium
Patched
16.01.2025
SB2025011590: Remote denial of service in FortiOS tenant IPsec IKE Medium
Patched
15.01.2025
SB2025011589: Denial of service in FortiOS IPsec IKE Low
Patched
15.01.2025
SB2025011435: HTTP response splitting in FortiOS and FortiProxy Medium
Patched
14.01.2025
SB2025011434: Information disclosure in FortiOS RADIUS Accounting-Request Low
Patched
14.01.2025
SB2024111836: Text injection in FortiOS and FortiProxy SSL-VPN WEB UI Low
Patched
18.11.2024
SB20241112154: Improper authentication in FortiOS fgfmd Medium
Patched
12.11.2024
SB20241112148: SSL-VPN session hijacking in FortiOS Medium
Patched
12.11.2024
SB2024081477: Real-time filesystem integrity check bypass in FortiOS Low
Patched
14.08.2024
SB20240709118: Security restrictions bypass in FortiOS Low
Patched
09.07.2024
SB2024070992: XSS in SSL VPN web UI for FortiOS and FortiProxy Low
Patched
09.07.2024
SB20240611284: Stack-based buffer overflow in FortiOS Low
Patched
11.06.2024
SB20240611283: Weak key derivation for backup file in FortiOS and FortiProxy Low
Patched
11.06.2024
SB20240611277: XSS on the reboot page in FortiOS and FortiProxy Low
Patched
11.06.2024


Showing elements 1 - 40 out of 59