PSIRT Advisories

The FortiGuard Labs Product Security Incident Response Team (PSIRT) continually test Fortinet hardware and software products, looking for vulnerabilities and weaknesses. Any such findings are fed back to Fortinet's development teams and serious issues are described along with protective solutions in the advisories below.

A Stack-based Buffer Overflow vulnerability in the HTTPD daemon of FortiOS may allow an authenticated remote attacker to crash...

Oct 01, 2020 Risk IR Number: FG-IR-19-248
A heap-based buffer overflow vulnerability in the processing of Link Control Protocol messages in FortiOS may allow a remote...

Sep 24, 2020 Risk IR Number: FG-IR-20-082
Under non-default configuration, a stack-based buffer overflow in FortiGate may allow a remote attacker authenticated to the SSL...

Sep 24, 2020 Risk IR Number: FG-IR-20-083
An improper neutralization of input vulnerability in FortiNAC may allow a remote authenticated attacker to perform a stored cross...

Sep 23, 2020 Risk IR Number: FG-IR-20-002
An improper neutralization of input vulnerability in FortiAnalyzer and FortiTester may allow a remote authenticated attacker to...

Sep 21, 2020 Risk IR Number: FG-IR-20-054
An information exposure vulnerability in FortiWeb CLI may allow an authenticated user to view sensitive information being logged...

Sep 18, 2020 Risk IR Number: FG-IR-19-269
An improper neutralization of script-related HTML tags in a web page in FortiManager and FortiAnalyzer may allow an attacker to...

Sep 18, 2020 Risk IR Number: FG-IR-20-005
An improper neutralization of input during web page generation in the SSL VPN portal of FortiOS may allow a remote authenticated...

Sep 16, 2020 Risk IR Number: FG-IR-19-223
An improper authentication vulnerability in SSL VPN in FortiOS may result in a user being able to log in successfully without...

FortiOS 6.0, 6.2, 6.4
Jul 13, 2020 Risk IR Number: FG-IR-19-283
An improper access control vulnerability in the admin SSH console of multiple products may allow an authenticated user to access...

FortiAnalyzer 6.0, 6.2 FortiAP 6.0, 6.2 FortiManager 6.0, 6.2
Jun 26, 2020 Risk IR Number: FG-IR-19-292
An OS command injection vulnerability in FortiManager and FortiAnalyzer may allow a privileged system administrator to run OS...

FortiAnalyzer 6.0, 6.2 FortiManager 6.0, 6.2
Jun 26, 2020 Risk IR Number: FG-IR-19-294
A cleartext storage in a file or on disk (CWE-313) vulnerability in FortiOS SSL VPN may allow an attacker to retrieve a logged-in...

FortiGate 5.4, 5.6, 6.0, 6.2
Jun 26, 2020 Risk IR Number: FG-IR-19-217
An insufficient control of network message volume (CWE-406) vulnerability in FortiAnalyzer may allow an unauthenticated remote...

Jun 22, 2020 Risk IR Number: FG-IR-20-036
An insufficient session expiration vulnerability in FortiDeceptor may allow an attacker to reuse the unexpired admin user session...

FortiDeceptor 3.0
Jun 21, 2020 Risk IR Number: FG-IR-20-006
An expression language injection vulnerability in FortiSIEM JBoss RichFaces library may allow a remote attacker to inject expression...

FortiSIEM 5.2
Jun 21, 2020 Risk IR Number: FG-IR-20-041