Firewalls Family for Nessus

IDNameSeverity
209746Fortinet FortiWeb sqli (FG-IR-20-124)
critical
209745Fortinet Fortigate ] Sensitive information is displayed in cleartext in the CLI window when using diagnose sys ha checksum command (FG-IR-20-009)
medium
209744Fortinet Fortigate Stack-based buffer overflows via crafted CLI commands (FG-IR-21-206)
medium
209742Fortinet Fortigate Integer overflow in SSLVPN allocator (FG-IR-21-049)
critical
209741Fortinet FortiWeb Stack-based buffer overflow due to type mismatch (FG-IR-21-134)
high
209740Fortinet Fortigate Improper Inter-VDOM access control (FG-IR-21-147)
medium
209739Fortinet Fortigate Evasion by manipulating MIME attachment (FG-IR-22-074)
high
209738Fortinet Fortigate Format string vulnerability in command line interpreter (FG-IR-21-235)
high
209737Fortinet Fortigate (FG-IR-21-155)
medium
209736Fortinet FortiWeb Confused deputy issue on SERVER_NAME causes open proxy flaw (FG-IR-21-123)
medium
209735Fortinet FortiWeb - Path traversal in API controller (FG-IR-21-156)
medium
209734Fortinet FortiWeb Multiple cryptographic flaws allow for full LDAP and RADIUS passwords compromise (FG-IR-20-222)
medium
209733Fortinet FortiWeb Multiple vulnerabilities in the authentication mechanism of confd (FG-IR-21-130)
critical
209732Fortinet Fortigate Privilege escalation vulnerability using the automation script feature (FG-IR-20-131)
high
209731Fortinet Fortigate Path traversal vulnerability (FG-IR-21-181)
high
209730Fortinet Fortigate Hardcoded SSLVPN cookie encryption key (FG-IR-21-051)
high
209729Fortinet FortiWeb Stack-based buffer overflows in API controllers (FG-IR-21-152)
high
209728Fortinet FortiWeb Heap-based buffer overflow in API v1.0 controller (FG-IR-21-188)
high
209727Fortinet FortiWeb Unauthorized user is granted access to the Reports available in the Log & Report section (FG-IR-21-138)
medium
209726Fortinet FortiWeb Incorrect handling of large requests leads to DoS (FG-IR-21-131)
high
209725Fortinet FortiWeb Open redirect due to missing domain whitelisting (FG-IR-21-133)
medium
209724Fortinet FortiWeb OS command injection (FG-IR-21-120)
high
209723Fortinet FortiWeb xss (FG-IR-21-139)
medium
209722Fortinet Fortigate Removal of `restore src-vis` command (FG-IR-21-201)
high
209721Fortinet FortiWeb Stack-Based Buffer Overflow vulnerability (FG-IR-21-119)
critical
209720Fortinet FortiWeb Multiple stack-based buffer overflow vulnerabilities in CLI command (FG-IR-20-206)
high
209719Fortinet Fortigate when connecting to SSL-VPN (FG-IR-21-018)
high
209718Fortinet FortiWeb Insufficient protections against XSS and CSRF (FG-IR-23-068)
high
209717Fortinet FortiWeb API (FG-IR-22-250)
medium
209716Fortinet Fortigate TCP Middlebox Reflection (FG-IR-22-073)
high
209715Fortinet Fortigate xss (FG-IR-21-057)
medium
209714Fortinet Fortigate Information disclosure in web proxy error pages (FG-IR-21-231)
medium
209713Fortinet Fortigate Lack of certificate verification when establishing secure connections (FG-IR-18-292)
medium
209712Fortinet Fortigate Out-of-bounds Write in captive portal (FG-IR-23-328)
critical
209711Fortinet FortiWeb OpenSSH regreSSHion Attack (CVE-2024-6387) (FG-IR-24-258)
critical
209559Fortinet FortiManager Missing Authentication (FG-IR-24-423)
critical
207342Fortinet FortiManager Authorization Bypass (FG-IR-23-204)
medium
206801SonicWall SonicOS Improper Access Control (SNWLID-2024-0015)
critical
206738Zyxel USG FLEX 4.20 < 5.39 DoS
high
206737Zyxel USG FLEX 4.16 < 5.39 Multiple Vulnerabilities
high
206736Zyxel USG FLEX 5.00 < 5.39 / ATP 5.00 < 5.39 Command Injection
high
206735Zyxel USG FLEX 4.50 < 5.39 / ATP 4.32 < 5.39 Multiple Vulnerabilities
high
206734Zyxel USG 4.60 < 5.39 / ATP 4.60 < 5.39 Command Injection
high
205439Fortinet Fortigate GUI Console WebSockets do not terminate on logout (FG-IR-22-445)
high
205428Fortinet Fortigate Real-time file system integrity checking write protection bypass (FG-IR-24-012)
medium
202071Fortinet FortiWeb ] Lack of client-side certificate validation when establishing secure connections (FG-IR-22-326)
medium
202070Fortinet Fortigate - IP address validation mishandles zero characters (FG-IR-23-446)
medium
202060Fortinet Fortigate XSS vulnerability in SSL VPN web UI (FG-IR-23-485)
high
200529Fortinet Fortigate in OpenSSL library (FG-IR-22-059)
high
200359Fortinet Fortigate Buffer overflow in fgfmd (FG-IR-24-036)
high