8.6

CVSS3.1

CVE-2024-52961 -

An improper neutralization of special elements used in an OS Command vulnerability [CWE-78] vulnerability in Fortinet FortiSandbox 5.0.0, FortiSandbox 4.4.0 through 4.4.6, FortiSandbox 4.2.1 through 4.2.7, FortiSandbox 4.0.0 through 4.0.5, FortiSandbox 3.2 all versions, FortiSandbox 3.1 all version…

πŸ“… Published: March 11, 2025, 2:54 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 7:09 p.m.

3.6

CVSS3.1

CVE-2024-55592 -

An incorrect authorization vulnerability [CWE-863] in FortiSIEM 7.2 all versions, 7.1 all versions, 7.0 all versions, 6.7 all versions, 6.6 all versions, 6.5 all versions, 6.4 all versions, 6.3 all versions, 6.2 all versions, 6.1 all versions, 5.4 all versions, 5.3 all versions, may allow an authen…

πŸ“… Published: March 11, 2025, 2:54 p.m. πŸ”„ Last Modified: July 25, 2025, 2:25 p.m.

5.5

CVSS3.1

CVE-2023-42784 -

An improper handling of syntactically invalid structure in Fortinet FortiWeb at least verions 7.4.0 through 7.4.6 and 7.2.0 through 7.2.10 and 7.0.0 through 7.0.10 allows attacker to execute unauthorized code or commands via HTTP/S crafted requests.

πŸ“… Published: March 11, 2025, 2:54 p.m. πŸ”„ Last Modified: July 22, 2025, 9:22 p.m.

7.1

CVSS3.1

CVE-2024-45328 -

An incorrect authorization vulnerability [CWE-863] in FortiSandbox 4.4.0 through 4.4.6 may allow a low priviledged administrator to execute elevated CLI commands via the GUI console menu.

πŸ“… Published: March 11, 2025, 2:54 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 7:09 p.m.

7.7

CVSS3.1

CVE-2023-40723 -

An exposure of sensitive information to an unauthorized actor in Fortinet FortiSIEM version 6.7.0 through 6.7.4 and 6.6.0 through 6.6.3 and 6.5.0 through 6.5.1 and 6.4.0 through 6.4.2 and 6.3.0 through 6.3.3 and 6.2.0 through 6.2.1 and 6.1.0 through 6.1.2 and 5.4.0 and 5.3.0 through 5.3.3 and 5.2.5…

πŸ“… Published: March 11, 2025, 2:54 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 7:09 p.m.

5.2

CVSS3.1

CVE-2024-55597 -

A improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiWeb versions 7.0.0 through 7.6.0 allows attacker to execute unauthorized code or commands via crafted requests.

πŸ“… Published: March 11, 2025, 2:54 p.m. πŸ”„ Last Modified: July 24, 2025, 6:47 p.m.

7.2

CVSS4.0

CVE-2025-27403 - Ratify Azure authentication providers can leak authentication tokens to non-Azure container registr…

Ratify is a verification engine as a binary executable and on Kubernetes which enables verification of artifact security metadata and admits for deployment only those that comply with policies the user creates. In a Kubernetes environment, Ratify can be configured to authenticate to a private Azure…

πŸ“… Published: March 11, 2025, 2:16 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.8

CVSS3.1

CVE-2025-22454 -

Insufficiently restrictive permissions in Ivanti Secure Access Client before 22.7R4 allows a local authenticated attacker to escalate their privileges.

πŸ“… Published: March 11, 2025, 2:11 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 7:09 p.m.

0.0

CVE-2024-12546 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: March 11, 2025, 2:02 p.m. πŸ”„ Last Modified: March 13, 2025, 3:15 a.m.

7.5

CVSS3.1

CVE-2024-54084 - SMM Arbitrary Write via TOCTOU Vulnerability

APTIOV contains a vulnerability in BIOS where an attacker may cause a Time-of-check Time-of-use (TOCTOU) Race Condition by local means. Successful exploitation of this vulnerability may lead to arbitrary code execution.

πŸ“… Published: March 11, 2025, 2:01 p.m. πŸ”„ Last Modified: Oct. 2, 2025, 2:21 p.m.
Total resulsts: 349182
Page 6387 of 34,919
Β« previous page Β» next page
Filters