5.4

CVSS3.1

CVE-2023-24204 -

SQL injection vulnerability in SourceCodester Simple Customer Relationship Management System v1.0 allows attacker to execute arbitrary code via the name parameter in get-quote.php.

πŸ“… Published: May 14, 2024, 4:22 p.m. πŸ”„ Last Modified: April 23, 2025, 4:33 p.m.

6.5

CVSS3.1

CVE-2023-36640 -

A use of externally-controlled format string in Fortinet FortiProxy versions 7.2.0 through 7.2.4, 7.0.0 through 7.0.10, 2.0.0 through 2.0.13, 1.2.0 through 1.2.13, 1.1.0 through 1.1.6, 1.0.0 through 1.0.7, FortiPAM versions 1.0.0 through 1.0.3, FortiOS versions 7.2.0, 7.0.0 through 7.0.12, 6.4.0 th…

πŸ“… Published: May 14, 2024, 4:19 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 8:10 a.m.

6.5

CVSS3.1

CVE-2023-45583 -

A use of externally-controlled format string in Fortinet FortiProxy versions 7.2.0 through 7.2.5, 7.0.0 through 7.0.11, 2.0.0 through 2.0.13, 1.2.0 through 1.2.13, 1.1.0 through 1.1.6 FortiPAM versions 1.1.0, 1.0.0 through 1.0.3 FortiOS versions 7.4.0, 7.2.0 through 7.2.5, 7.0.0 through 7.0.13, 6.4…

πŸ“… Published: May 14, 2024, 4:19 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 8:27 a.m.

7.1

CVSS3.1

CVE-2024-23105 -

A Use Of Less Trusted Source [CWE-348] vulnerability in Fortinet FortiPortal version 7.0.0 through 7.0.6 and version 7.2.0 through 7.2.1 allows an unauthenticated attack to bypass IP protection through crafted HTTP or HTTPS packets.

πŸ“… Published: May 14, 2024, 4:19 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 8:56 a.m.

5.2

CVSS3.1

CVE-2023-50180 -

An exposure of sensitive system information to an unauthorized control sphere vulnerability [CWE-497] in FortiADC version 7.4.1 and below, version 7.2.3 and below, version 7.1.4 and below, version 7.0.5 and below, version 6.2.6 and below may allow a read-only admin to view data pertaining to other …

πŸ“… Published: May 14, 2024, 4:19 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 8:36 a.m.

6.8

CVSS3.1

CVE-2023-46714 -

A stack-based buffer overflow [CWE-121] vulnerability in Fortinet FortiOS version 7.2.1 through 7.2.6 and version 7.4.0 through 7.4.1 allows a privileged attacker over the administrative interface to execute arbitrary code or commands via crafted HTTP or HTTPs requests.

πŸ“… Published: May 14, 2024, 4:19 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 8:29 a.m.

6.5

CVSS3.1

CVE-2023-44247 -

A double free vulnerability [CWE-415] vulnerability in Fortinet FortiOS 6.4 all versions may allow a privileged attacker to execute code or commands via crafted HTTP or HTTPs requests.

πŸ“… Published: May 14, 2024, 4:19 p.m. πŸ”„ Last Modified: Jan. 14, 2026, 9:14 a.m.

6.7

CVSS3.1

CVE-2023-40720 -

An authorization bypass through user-controlled key vulnerability [CWE-639] in FortiVoiceEntreprise version 7.0.0 through 7.0.1 and before 6.4.8 allows an authenticated attacker to read the SIP configuration of other users via crafted HTTP or HTTPS requests.

πŸ“… Published: May 14, 2024, 4:19 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 8:20 a.m.

4.7

CVSS3.1

CVE-2023-45586 -

An insufficient verification of data authenticity vulnerability [CWE-345] in Fortinet FortiOS SSL-VPN tunnel mode version 7.4.0 through 7.4.1, version 7.2.0 through 7.2.7 and before 7.0.12 & FortiProxy SSL-VPN tunnel mode version 7.4.0 through 7.4.1, version 7.2.0 through 7.2.7 and before 7.0.13 al…

πŸ“… Published: May 14, 2024, 4:19 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 8:27 a.m.

5

CVSS3.1

CVE-2024-26007 -

An improper check or handling of exceptional conditions vulnerability [CWE-703] in Fortinet FortiOS version 7.4.1 allows an unauthenticated attacker to provoke a denial of service on the administrative interface via crafted HTTP requests.

πŸ“… Published: May 14, 2024, 4:19 p.m. πŸ”„ Last Modified: Dec. 11, 2024, 7:55 p.m.
Total resulsts: 349182
Page 9868 of 34,919
Β« previous page Β» next page
Filters