Everything you care about in one place

Follow feeds: blogs, news, RSS and more. An effortless way to read and digest content of your choice.

Get Feeder

filestore.fortinet.com

FortiGuard Labs | FortiGuard Center - IR Advisories

Get the latest updates from FortiGuard Labs | FortiGuard Center - IR Advisories directly as they happen.

Follow now 121 followers

Latest posts

Last updated 22 days ago

Unauthenticated VNC access exposed on all interfaces

22 days ago

Summary An Exposure of Resource to Wrong Sphere vulnerability [CWE-668] in FortiSanbox...

Supers override fails to properly override supervisor address

22 days ago

Summary An Improper Restriction of Communication Channel to Intended Endpoints [CWE-923] vulnerability...

Stack Buffer Overflow in Log Report

22 days ago

Summary A Stack-based Buffer Overflow vulnerability [CWE-121] in FortiOS, FortiProxy and FortiPAM...

SSL-VPN Reflected XSS

22 days ago

Summary An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')...

Path traversal in CLI command allows deletion of root file system

22 days ago

Summary An Improper Limitation of a Pathname to a Restricted Directory ('Path...

Out of bounds read in GUI

22 days ago

Summary An out of bounds read [CWE-125] vulnerability in FortiAuthenticator may allow...

Missed certificate verification in AD Connector communication with FortiClient EMS

22 days ago

Summary An Improper Certificate Validation vulnerability [CWE-295] in FortiClient EMS may allow...

Header injection in captive portal authentication form

22 days ago

Summary An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response...

Header injection in Web Filter warning page

22 days ago

Summary An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response...

Cross-Site Scripting in Domain parameter

22 days ago

Summary An Improper Neutralization of Script-Related HTML Tags in a Web Page...

Buffer overread in authd and wad daemon

22 days ago

Summary A buffer over-read vulnerability [CWE-126] in FortiOS, FortiProxy, and FortiSASE may...

Second-Order OS Command Injection via JSON Input on start vnc feature

about 2 months ago

Summary An improper neutralization of special elements used in an OS command...