Known vulnerabilities in Fortinet, Inc FortiClientEMS 7.2.4

Vendor: Fortinet, Inc
Website: https://www.fortinet.com/
Total Security Bulletins: 9

Security bulletins (9)

Secuity bulletin Severity Status Published
SB2026011366: Authenticated SQL injection in FortiClientEMS Low
Patched
13.01.2026
SB2025061109: Improper Authentication in FortiClientEMS Medium
Patched
11.06.2025
SB2025061108: Server-Side Request Forgery (SSRF) in FortiClientEMS Low
Patched
11.06.2025
SB2025041033: Improper Verification of Source of a Communication Channel in FortiClientEMS Low
Patched
10.04.2025
SB2025041032: Observable Response Discrepancy in FortiClientEMS and FortiSOAR Medium
Patched
10.04.2025
SB2025040848: Cross-site scripting in FortiClientEMS Medium
Patched
08.04.2025
SB2025011440: Missing brute-force protection in FortiClientEMS Medium
Patched
14.01.2025
SB2024091086: Path traversal in FortiClientEMS Low
Patched
10.09.2024
SB2024091083: Remote command execution in FortiClientEMS Medium
Patched
10.09.2024