Known vulnerabilities in Fortinet, Inc FortiOS 7.4.4

Vendor: Fortinet, Inc
Website: https://www.fortinet.com/
Total Security Bulletins: 40

Security bulletins (40)

Secuity bulletin Severity Status Published
SB2025102162: Multiple vulnerabilities in Fortinet FortiOS, FortiProxy and FortiSASE Low
Patched
21.10.2025
SB2025101575: Improper validation of certificate with host mismatch in FortiOS and FortiProxy Medium
Patched
15.10.2025
SB2025101567: Unchecked Return Value in FortiOS Low
Patched
15.10.2025
SB2025101565: Incorrect provision of specified functionality in FortiOS Low
Patched
15.10.2025
SB2025101507: Insertion of Sensitive Information Into Sent Data in Fortinet products Low
Patched
15.10.2025
SB2025101505: Inclusion of Sensitive Information in Log Files in FortiOS and FortiProxy Low
Patched
15.10.2025
SB2025101504: Insufficient Session Expiration in FortiOS Medium
Patched
15.10.2025
SB2025101503: Heap-based buffer overflow in Fortinet products Low
Patched
15.10.2025
SB20251014108: Heap-based buffer overflow in Fortinet products Medium
Patched
14.10.2025
SB20251014106: Heap-based buffer overflow in Fortinet products Low
Patched
14.10.2025
SB20250812105: Incorrect Privilege Assignment in FortiOS Low
Patched
12.08.2025
SB2025081299: Integer overflow in Fortinet products Low
Patched
12.08.2025
SB2025070845: Heap-based buffer overflow in FortiOS Low
Patched
08.07.2025
SB2025070844: Missing critical step in authentication in FortiOS and FortiProxy Low
Patched
08.07.2025
SB2025070843: Improperly implemented security check for standard in FortiOS and FortiProxy Medium
Patched
08.07.2025
SB2025061119: Improper privilege management in Fortinet products Low
Patched
11.06.2025
SB2025061116: Improper certificate validation in FortiOS Low
Patched
11.06.2025
SB2025061115: Authentication bypass using an alternate path or channel in FortiOS and FortiProxy Low
Patched
11.06.2025
SB2025061113: Insufficient Session Expiration in FortiOS Medium
Patched
11.06.2025
SB2025061112: Improper restriction of communication channel to intended endpoints in FortiOS Low
Patched
11.06.2025
SB2025061107: Incomplete cleanup in FortiOS and FortiProxy Low
Patched
11.06.2025
SB2025061106: Information disclosure in FortiOS Low
Patched
11.06.2025
SB2025051366: Missing authentication for critical function in Fortinet products High
Patched
13.05.2025
SB2025041107: Allocation of Resources Without Limits or Throttling in FortiOS Medium
Patched
11.04.2025
SB2025041046: Multiple vulnerabilities in Fortinet products High
Patched
10.04.2025
SB2025041045: Allocation of Resources Without Limits or Throttling in FortiOS Medium
Patched
10.04.2025
SB2025041026: Null pointer dereference in FortiOS Medium
Patched Public exploit
10.04.2025
SB2025040986: IP address spoofing in FortiOS Low
Patched
09.04.2025
SB2025040985: Authenticated denial of service in FortiOS SSL VPN Medium
Patched
09.04.2025
SB2025040963: LDAP credentials exposure in FortiOS Low
Patched
09.04.2025
SB2025040907: MitM attack in FortiOS High
Patched
09.04.2025
SB2025031208: Privilege escalation in FortiOS Low
Patched
12.03.2025
SB20250211168: Incorrect privilege assignment in FortiOS Low
Patched
11.02.2025
SB20250211102: Remote code execution in FortiOS CAPWAP control Critical
Patched
11.02.2025
SB2025012295: Remote denial of service in FortiOS IPsec Low
Patched
22.01.2025
SB2025011651: Multiple path traversal vulnerabilities in FortiOS Medium
Patched
16.01.2025
SB2025011590: Remote denial of service in FortiOS tenant IPsec IKE Medium
Patched
15.01.2025
SB2025011589: Denial of service in FortiOS IPsec IKE Low
Patched
15.01.2025
SB2025011435: HTTP response splitting in FortiOS and FortiProxy Medium
Patched
14.01.2025


Showing elements 1 - 40 out of 47