📦 Fortianalyzer Cloud

by Fortinet

🔍 What is Fortianalyzer Cloud?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-48886

CRITICAL CVSS 9.0 Jan 14, 2025

This vulnerability allows attackers to bypass weak authentication mechanisms in multiple Fortinet products via brute-force attacks, potentially leading to unauthorized command execution. Affected syst...

CVE-2024-40584

HIGH CVSS 7.2 Feb 11, 2025

This OS command injection vulnerability in Fortinet FortiAnalyzer and FortiManager products allows authenticated privileged attackers to execute arbitrary commands via crafted HTTP/HTTPS requests. Att...

CVE-2024-50563

HIGH CVSS 7.3 Jan 16, 2025

This vulnerability allows attackers to perform brute-force attacks against Fortinet management platforms due to weak authentication mechanisms. Successful exploitation could lead to unauthorized code ...

CVE-2024-45331

HIGH CVSS 7.3 Jan 16, 2025

This CVE describes an incorrect privilege assignment vulnerability in Fortinet FortiAnalyzer, FortiManager, and FortiAnalyzer Cloud products. Attackers can execute specific shell commands to escalate ...

CVE-2024-35273

HIGH CVSS 7.2 Jan 14, 2025

This vulnerability allows attackers to execute arbitrary code with elevated privileges on Fortinet FortiManager and FortiAnalyzer systems through specially crafted HTTP requests. It affects organizati...

CVE-2024-45330

HIGH CVSS 7.2 Oct 8, 2024

CVE-2024-45330 is a format string vulnerability in Fortinet FortiAnalyzer that allows attackers to escalate privileges via specially crafted requests. This affects FortiAnalyzer versions 7.4.0 through...

CVE-2024-33503

MEDIUM CVSS 6.7 Jan 14, 2025

This vulnerability allows attackers to escalate privileges on Fortinet FortiManager and FortiAnalyzer systems by executing specific shell commands. Affected users are those running vulnerable versions...

CVE-2024-35275

MEDIUM CVSS 6.6 Jan 14, 2025

This SQL injection vulnerability in Fortinet FortiAnalyzer and FortiManager allows attackers to execute arbitrary SQL commands through specially crafted HTTP requests, potentially leading to privilege...