VYPR

Fortiadc 200d

by Fortinet

CVEs (46)

  • CVE-2020-15935MedNov 2, 2021
    risk 0.28cvss 4.3epss 0.01

    A cleartext storage of sensitive information in GUI in FortiADC versions 5.4.3 and below, 6.0.0 and below may allow a remote authenticated attacker to retrieve some sensitive information such as users LDAP passwords and RADIUS shared secret by deobfuscating the passwords entry…

  • CVE-2021-24024MedApr 12, 2021
    risk 0.28cvss 4.3epss 0.01

    A clear text storage of sensitive information into log file vulnerability in FortiADCManager 5.3.0 and below, 5.2.1 and below and FortiADC 5.3.7 and below may allow a remote authenticated attacker to read other local users' password in log files.

  • CVE-2024-36511LowSep 10, 2024
    risk 0.24cvss 3.7epss 0.00

    An improperly implemented security check for standard vulnerability [CWE-358] in FortiADC Web Application Firewall (WAF) 7.4.0 through 7.4.4, 7.2 all versions, 7.1 all versions, 7.0 all versions, 6.2 all versions, 6.1 all versions, 6.0 all versions when cookie security policy is…

  • CVE-2022-43952LowApr 11, 2023
    risk 0.23cvss 3.5epss 0.00

    An improper neutralization of input during web page generation ('Cross-site Scripting') vulnerability [CWE-79] in FortiADC version 7.1.1 and below, version 7.0.3 and below, version 6.2.5 and below may allow an authenticated attacker to perform a cross-site scripting attack via…

  • CVE-2014-8618May 12, 2015
    risk 0.00cvss —epss 0.01

    Cross-site scripting (XSS) vulnerability in the theme login page in Fortinet FortiADC D models before 4.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

  • CVE-2014-0331Apr 10, 2014
    risk 0.00cvss —epss 0.02

    Cross-site scripting (XSS) vulnerability in the web administration interface in FortiADC with firmware before 3.2.1 allows remote attackers to inject arbitrary web script or HTML via the locale parameter to gui_partA/.

Page 3 of 3