7.9

CVSS3.1

CVE-2024-12755 - Avaya Spaces XSS Vulnerability

A Cross-Site Scripting (XSS) vulnerability in Avaya Spaces may have allowed unauthorized code execution and potential disclose of sensitive information.

📅 Published: Feb. 11, 2025, 4:57 p.m. 🔄 Last Modified: July 29, 2025, 5:23 p.m.

8.1

CVSS3.1

CVE-2025-24472 -

An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS 7.0.0 through 7.0.16 and FortiProxy 7.2.0 through 7.2.12, 7.0.0 through 7.0.19 may allow a remote unauthenticated attacker with prior knowledge of upstream and downstream devices serial numbers to …

📅 Published: Feb. 11, 2025, 4:50 p.m. 🔄 Last Modified: Oct. 24, 2025, 12:53 p.m.

9.3

CVSS3.1

CVE-2025-1126 - Lexmark has identified a vulnerability in our Lexmark Print Management Client (LPMC).

A Reliance on Untrusted Inputs in a Security Decision vulnerability has been identified in the Lexmark Print Management Client.

📅 Published: Feb. 11, 2025, 4:50 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

7.9

CVSS3.1

CVE-2025-22399 -

Dell UCC Edge, version 2.3.0, contains a Blind SSRF on Add Customer SFTP Server vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Server-side request forgery

📅 Published: Feb. 11, 2025, 4:24 p.m. 🔄 Last Modified: Dec. 6, 2025, 12:48 a.m.

2.2

CVSS3.1

CVE-2024-27780 -

Multiple Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerabilities [CWE-79] in FortiSIEM 7.1 all versions, 7.0 all versions, 6.7 all versions incident page may allow an authenticated attacker to perform a cross-site scripting attack via crafted HTTP reque…

📅 Published: Feb. 11, 2025, 4:09 p.m. 🔄 Last Modified: July 16, 2025, 2:54 p.m.

6.9

CVSS3.1

CVE-2024-27781 -

An improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.4, FortiSandbox 4.2.1 through 4.2.6, FortiSandbox 4.0.0 through 4.0.4, FortiSandbox 3.2 all versions, FortiSandbox 3.1 all versions, FortiSandbox 3.0 all …

📅 Published: Feb. 11, 2025, 4:09 p.m. 🔄 Last Modified: Feb. 26, 2026, 7:09 p.m.

6.8

CVSS3.1

CVE-2024-40584 -

An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] in Fortinet FortiAnalyzer version 7.4.0 through 7.4.3, 7.2.0 through 7.2.5, 7.0.0 through 7.0.13, 6.4.0 through 6.4.15 and 6.2.2 through 6.2.13, Fortinet FortiManager version 7.4.0 t…

📅 Published: Feb. 11, 2025, 4:09 p.m. 🔄 Last Modified: July 22, 2025, 9:37 p.m.

5.9

CVSS3.1

CVE-2024-36508 -

An improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability [CWE-22] in Fortinet FortiManager version 7.4.0 through 7.4.2 and before 7.2.5 and Fortinet FortiAnalyzer version 7.4.0 through 7.4.2 and before 7.2.5 CLI allows an authenticated admin user with diagnose…

📅 Published: Feb. 11, 2025, 4:09 p.m. 🔄 Last Modified: July 24, 2025, 7:04 p.m.

6.3

CVSS3.1

CVE-2024-40586 -

An Improper Access Control vulnerability [CWE-284] in FortiClient Windows version 7.4.0, version 7.2.6 and below, version 7.0.13 and below may allow a local user to escalate his privileges via FortiSSLVPNd service pipe.

📅 Published: Feb. 11, 2025, 4:09 p.m. 🔄 Last Modified: July 16, 2025, 3:11 p.m.

6.3

CVSS3.1

CVE-2023-40721 -

A use of externally-controlled format string vulnerability [CWE-134] vulnerability in Fortinet allows a privileged attacker to execute arbitrary code or commands via specially crafted requests.

📅 Published: Feb. 11, 2025, 4:09 p.m. 🔄 Last Modified: Jan. 14, 2026, 3:15 p.m.
Total resulsts: 348123
Page 6685 of 34,813
« previous page » next page
Filters