Known vulnerabilities in Fortinet, Inc FortiManager 6.4.15

Vendor: Fortinet, Inc
Website: https://www.fortinet.com/
Total Security Bulletins: 20

Security bulletins (20)

Secuity bulletin Severity Status Published
SB2025120942: Insecure private key storage in Fortinet products Low
Patched
09.12.2025
SB20251014106: Heap-based buffer overflow in Fortinet products Low
Patched
14.10.2025
SB20250812101: Path traversal in FortiManager Low
Patched
12.08.2025
SB2025070869: SQL injection in FortiManager and FortiAnalyzer forward module Low
Patched
08.07.2025
SB2025051616: OpenSSH update for Fortinet products Medium
Patched Public exploit
16.05.2025
SB2025041038: Multiple vulnerabilities in Fortinet products Low
Patched
10.04.2025
SB2025040977: Privilege escalation via external connector in FortiManager and FortiAnalyzer Low
Patched
09.04.2025
SB2025040976: Arbitrary file deletion via CLI in FortiAnalyzer and FortiManager Low
Patched
09.04.2025
SB2025040975: Use of hard-coded cryptographic key in FortiManager Low
Patched
09.04.2025
SB20250311116: SQL injection in FortiManager and FortiAnalyzer Low
Patched
11.03.2025
SB20250311115: Privilege escalation in FortiAnalyzer and FortiManager Low
Patched
11.03.2025
SB20250211167: Inclusion of sensitive information into event log in FortiManager Medium
Patched
11.02.2025
SB2025011439: Arbitrary file deletion in FortiManager and FortiAnalyzer Low
Patched
14.01.2025
SB2024112169: Privilege escalation in FortiManager Low
Patched
21.11.2024
SB2024111415: Unauthorized file creation in FortiManager Low
Patched
14.11.2024
SB2024111413: Privilege escalation in FortiManager Low
Patched
14.11.2024
SB2024111410: Path traversal in FortiManager Low
Patched
14.11.2024
SB2024111405: Arbitrary file deletion in FortiManager Low
Patched
14.11.2024
SB2024111402: Improper access control in FortiManager Low
Patched
14.11.2024
SB20241112169: Remote code execution in FortiManager httpd High
Patched
12.11.2024