Known vulnerabilities in Fortinet, Inc FortiManager 6.2.5

Vendor: Fortinet, Inc
Website: https://www.fortinet.com/
Total Security Bulletins: 40

Security bulletins (40)

Secuity bulletin Severity Status Published
SB20251014106: Heap-based buffer overflow in Fortinet products Low
Patched
14.10.2025
SB20250812101: Path traversal in FortiManager Low
Patched
12.08.2025
SB2025040977: Privilege escalation via external connector in FortiManager and FortiAnalyzer Low
Patched
09.04.2025
SB2025040909: MitM attack in FortiManager High
Patched
09.04.2025
SB20250311116: SQL injection in FortiManager and FortiAnalyzer Low
Patched
11.03.2025
SB20250311115: Privilege escalation in FortiAnalyzer and FortiManager Low
Patched
11.03.2025
SB20250211167: Inclusion of sensitive information into event log in FortiManager Medium
Patched
11.02.2025
SB2025011439: Arbitrary file deletion in FortiManager and FortiAnalyzer Low
Patched
14.01.2025
SB2024112169: Privilege escalation in FortiManager Low
Patched
21.11.2024
SB2024111415: Unauthorized file creation in FortiManager Low
Patched
14.11.2024
SB2024111413: Privilege escalation in FortiManager Low
Patched
14.11.2024
SB2024111410: Path traversal in FortiManager Low
Patched
14.11.2024
SB2024111405: Arbitrary file deletion in FortiManager Low
Patched
14.11.2024
SB2024111402: Improper access control in FortiManager Low
Patched
14.11.2024
SB20241112169: Remote code execution in FortiManager httpd High
Patched
12.11.2024
SB2024102360: Remote command execution in Fortinet FortiManager Critical
Patched Exploited
23.10.2024
SB2024091087: Improper access control in FortiAnalyzer and FortiManager Low
Patched
10.09.2024
SB2024031434: Format string error in Fortinet FortiManager, FortiAnalyzer, FortiAnalyzer-BigData and FortiPortal Low
Patched
14.03.2024
SB2024031433: Improper access control in Fortinet FortiManager High
Patched
14.03.2024
SB2023101257: Multiple vulnerabilities in Fortinet FortiManager and FortiAnalyzer Medium
Patched Public exploit
12.10.2023
SB2023101256: Multiple vulnerabilities in Fortinet FortiAnalyzer and FortiManager Medium
Patched
12.10.2023
SB2023101255: Improper access control in Fortinet FortiManager Medium
Patched
12.10.2023
SB2023101254: OS Command Injection in Fortinet FortiManager, FortiAnalyzer and FortiADC Low
Patched
12.10.2023
SB2023091976: Information disclosure in FortiManager and FortiAnalyzer Low
Patched
19.09.2023
SB2023010325: Incorrect user management behavior in FortiManager Medium
Patched
03.01.2023
SB2022110230: Cross-site scripting in Fortinet FortiManager and FortiAnalyzer Low
Patched
02.11.2022
SB2022101026: Information disclosure in FortiAnalyzer and FortiManager Low
Patched
10.10.2022
SB2022090664: Improper access control in FortiManager Low
Patched
06.09.2022
SB2022070535: Multiple vulnerabilities in Fortinet FortiManager and FortiAnalyzer Medium
Patched
05.07.2022
SB2022070528: Buffer overflow in Fortinet FortiManager Low
Patched
05.07.2022
SB2022060801: MitM attack in multiple Fortinet products Medium
Patched
08.06.2022
SB2022040204: Denial of service in FortiManager OpenSSL library Medium
Not patched
02.04.2022
SB2022030127: Security restrictions bypass in FortiAnalyzer and FortiManager Low
Patched
01.03.2022
SB2022030123: Information disclosure in FortiManager Low
Patched
01.03.2022
SB2021090809: Code Injection in FortiManager Low
Patched
08.09.2021
SB2021090808: Improper Authentication in FortiManager Medium
Patched
08.09.2021
SB2021080319: OS command injection in FortiManager and FortiAnalyzer Medium
Patched
03.08.2021
SB2021080318: Multiple vulnerabilities in FortiManager and FortiAnalyzer Medium
Patched
03.08.2021
SB2021071909: Remote code execution in Fortinet FortiManager and FortiAnalyzer High
Patched
19.07.2021
SB2021071404: Privilege escalation in FortiManager and FortiAnalyzer Low
Patched
14.07.2021