Known vulnerabilities in Fortinet, Inc FortiAnalyzer 7.2.1

Vendor: Fortinet, Inc
Website: https://www.fortinet.com/
Total Security Bulletins: 40

Security bulletins (40)

Secuity bulletin Severity Status Published
SB2025101501: Improper Authentication in FortiAnalyzer Medium
Patched
15.10.2025
SB20251014106: Heap-based buffer overflow in Fortinet products Low
Patched
14.10.2025
SB2025070869: SQL injection in FortiManager and FortiAnalyzer forward module Low
Patched
08.07.2025
SB2025041041: Buffer underflow in Fortinet products Medium
Patched
10.04.2025
SB2025041038: Multiple vulnerabilities in Fortinet products Low
Patched
10.04.2025
SB2025040977: Privilege escalation via external connector in FortiManager and FortiAnalyzer Low
Patched
09.04.2025
SB2025040976: Arbitrary file deletion via CLI in FortiAnalyzer and FortiManager Low
Patched
09.04.2025
SB2025040962: Log pollution via login page in FortiAnalyzer and FortiManager Medium
Patched
09.04.2025
SB2025040908: MitM attack in FortiAnalyzer High
Patched
09.04.2025
SB20250311116: SQL injection in FortiManager and FortiAnalyzer Low
Patched
11.03.2025
SB20250311115: Privilege escalation in FortiAnalyzer and FortiManager Low
Patched
11.03.2025
SB20250211166: Inclusion of sensitive information into event log in FortiAnalyzer Medium
Patched
11.02.2025
SB20250211158: Information disclosure in FortiAnalyzer Low
Patched
11.02.2025
SB2025011439: Arbitrary file deletion in FortiManager and FortiAnalyzer Low
Patched
14.01.2025
SB2025011438: Privilege escalation in FortiManager and FortiAnalyzer Low
Patched
14.01.2025
SB2024112170: Privilege escalation in FortiAnalyzer Low
Patched
21.11.2024
SB2024112167: Security restrictions bypass in FortiAnalyzer Medium
Patched Public exploit
21.11.2024
SB2024111414: Unauthorized file creation in FortiAnalyzer Low
Patched
14.11.2024
SB2024111412: Privilege escalation in FortiAnalyzer Low
Patched
14.11.2024
SB2024111409: Path traversal in FortiAnalyzer Low
Patched
14.11.2024
SB2024111404: Arbitrary file deletion in FortiAnalyzer Low
Patched
14.11.2024
SB2024111401: Improper access control in FortiAnalyzer Low
Patched
14.11.2024
SB20241112168: Remote code execution in FortiAnalyzer httpd High
Patched
12.11.2024
SB2024101439: FortiAnalyzer update for OpenSSH regreSSHion attack High
Patched Public exploit
14.10.2024
SB2024100849: Format string error in FortiAnalyzer fazsvcd daemon Low
Patched
08.10.2024
SB2024091087: Improper access control in FortiAnalyzer and FortiManager Low
Patched
10.09.2024
SB2024081476: Unverified password change in FortiAnalyzer and FortiManager Low
Patched
14.08.2024
SB2024031434: Format string error in Fortinet FortiManager, FortiAnalyzer, FortiAnalyzer-BigData and FortiPortal Low
Patched
14.03.2024
SB2023122909: Path traversal in FortiAnalyzer and FortiManager Medium
Patched
29.12.2023
SB2023112018: Use of hard-coded credentials in Fortinet FortiManager and FortiAnalyzer Low
Patched
20.11.2023
SB2023101257: Multiple vulnerabilities in Fortinet FortiManager and FortiAnalyzer Medium
Patched Public exploit
12.10.2023
SB2023101256: Multiple vulnerabilities in Fortinet FortiAnalyzer and FortiManager Medium
Patched
12.10.2023
SB2023101254: OS Command Injection in Fortinet FortiManager, FortiAnalyzer and FortiADC Low
Patched
12.10.2023
SB2023091976: Information disclosure in FortiManager and FortiAnalyzer Low
Patched
19.09.2023
SB2023061325: SSRF in FortiManager and FortiAnalyzer Medium
Patched
13.06.2023
SB2023041209: MitM attack in FortiAnalyzer and FortiManager Medium
Patched
12.04.2023
SB2023041199: Information disclosure in FortiAnalyzer Low
Patched
11.04.2023
SB2023030950: CSV injection in FortiAnalyzer Low
Patched
09.03.2023
SB2023021723: AngularJS client-side template injection in FortiAnalyzer High
Patched
17.02.2023


Showing elements 1 - 40 out of 43