Everything you care about in one place

Follow feeds: blogs, news, RSS and more. An effortless way to read and digest content of your choice.

Get Feeder

filestore.fortinet.com

FortiGuard Labs | FortiGuard Center - IR Advisories

Get the latest updates from FortiGuard Labs | FortiGuard Center - IR Advisories directly as they happen.

Follow now 518 followers

Latest posts

Last updated 12 days ago

Unauthenticated VNC access exposed on all interfaces

12 days ago

CVSSv3 Score: 7.7 An Exposure of Resource to Wrong Sphere vulnerability [CWE-668]...

Supers override fails to properly override supervisor address

12 days ago

CVSSv3 Score: 6.9 An Improper Restriction of Communication Channel to Intended Endpoints...

SSL-VPN Reflected XSS

12 days ago

CVSSv3 Score: 6.1 An Improper Neutralization of Input During Web Page Generation...

Path traversal in CLI command allows deletion of root file system

12 days ago

CVSSv3 Score: 5.0 An Improper Limitation of a Pathname to a Restricted...

Out of bounds read in GUI

12 days ago

CVSSv3 Score: 7.0 An out of bounds read [CWE-125] vulnerability in FortiAuthenticator...

Missed certificate verification in AD Connector communication with FortiClient EMS

12 days ago

CVSSv3 Score: 6.7 An Improper Certificate Validation vulnerability [CWE-295] in FortiClient EMS...

Header injection in captive portal authentication form

12 days ago

CVSSv3 Score: 3.1 An Improper Neutralization of CRLF Sequences in HTTP Headers...

Header injection in Web Filter warning page

12 days ago

CVSSv3 Score: 3.4 An Improper Neutralization of CRLF Sequences in HTTP Headers...

Cross-Site Scripting in Domain parameter

12 days ago

CVSSv3 Score: 5.3 An Improper Neutralization of Script-Related HTML Tags in a...

Buffer overread in authd and wad daemon

12 days ago

CVSSv3 Score: 4.1 A buffer over-read vulnerability [CWE-126] in FortiOS, FortiProxy, and...

Stack Buffer Overflow in Log Report

12 days ago

CVSSv3 Score: 5.9 A Stack-based Buffer Overflow vulnerability [CWE-121] in FortiOS, FortiProxy...

Second-Order OS Command Injection via JSON Input on start vnc feature

about 2 months ago

CVSSv3 Score: 9.1 An improper neutralization of special elements used in an...