Everything you care about in one place

Follow feeds: blogs, news, RSS and more. An effortless way to read and digest content of your choice.

Get Feeder

filestore.fortinet.com

FortiGuard Labs | FortiGuard Center - IR Advisories

Get the latest updates from FortiGuard Labs | FortiGuard Center - IR Advisories directly as they happen.

Follow now 118 followers

Latest posts

Last updated 10 days ago

Out-Of-Bounds Write in administrative interface

9 days ago

Summary An out-of-bounds write vulnerability [CWE-787] in FortiWeb CGI daemon may allow...

Integer Overflow Denial of Service in administrative interface

10 days ago

Summary An Integer Overflow or Wraparound vulnerability [CWE-190] in FortiWeb may allow...

Missing Authentication for critical function in CAPWAP daemon

10 days ago

Summary A missing authentication for critical function vulnerability [CWE-306] in FortiOS and...

Heap-based buffer overflow in oftpd daemon

10 days ago

Summary A heap-based buffer overflow vulnerability [CWE-122] in FortiAnalyzer Cloud oftpd daemon...

Multiple SQL Injections

10 days ago

Summary An Improper Neutralization of Special Elements used in an SQL Command...

Credential disclosure in LDAP configuration web page.

10 days ago

Summary An Insufficiently protected credentials vulnerability [CWE-522] in FortiSanbox and FortiSanbox PaaS...

Clear-text credentials retrievable with IP modification for connectors

10 days ago

Summary A Storing Passwords in a Recoverable Format vulnerability [CWE-257] in FortiSOAR...

Cleartext Credentials in response for API endpoints

10 days ago

Summary A Cleartext Transmission of Sensitive Information vulnerability [CWE-319] in FortiSOAR may...

Clear-text credentials retrievable with IP modification for LDAP

10 days ago

Summary A Storing Passwords in a Recoverable Format vulnerability [CWE-257] in FortiSOAR...

Arbitrary directory delete on vmimages delete feature

10 days ago

Summary An Improper Limitation of a Pathname to a Restricted Directory ('Path...

Multiple Path traversals in CLI

10 days ago

Summary Multiple Relative Path Traversal vulnerabilities [CWE-23] in FortiWeb may allow a...

2FA request can be replayed without a valid token after one successful request

10 days ago

Summary An Improper authentication vulnerability [CWE-287] in FortiSOAR web GUI may allow...