📦 Fortimanager Cloud

by Fortinet

🔍 What is Fortimanager Cloud?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-48886

CRITICAL CVSS 9.0 Jan 14, 2025

This vulnerability allows attackers to bypass weak authentication mechanisms in multiple Fortinet products via brute-force attacks, potentially leading to unauthorized command execution. Affected syst...

CVE-2024-47575

CRITICAL CVSS 9.8 Oct 23, 2024

This critical vulnerability in FortiManager allows unauthenticated attackers to execute arbitrary code or commands via specially crafted requests. It affects multiple versions of FortiManager and Fort...

CVE-2024-46662

HIGH CVSS 8.8 Mar 14, 2025

This command injection vulnerability in Fortinet FortiManager allows attackers to execute arbitrary commands with elevated privileges by sending specially crafted packets. Affected systems include For...

CVE-2024-40584

HIGH CVSS 7.2 Feb 11, 2025

This OS command injection vulnerability in Fortinet FortiAnalyzer and FortiManager products allows authenticated privileged attackers to execute arbitrary commands via crafted HTTP/HTTPS requests. Att...

CVE-2024-50563

HIGH CVSS 7.3 Jan 16, 2025

This vulnerability allows attackers to perform brute-force attacks against Fortinet management platforms due to weak authentication mechanisms. Successful exploitation could lead to unauthorized code ...

CVE-2024-45331

HIGH CVSS 7.3 Jan 16, 2025

This CVE describes an incorrect privilege assignment vulnerability in Fortinet FortiAnalyzer, FortiManager, and FortiAnalyzer Cloud products. Attackers can execute specific shell commands to escalate ...

CVE-2024-50566

HIGH CVSS 7.2 Jan 14, 2025

This CVE describes an OS command injection vulnerability in Fortinet FortiManager and FortiManager Cloud products. Authenticated remote attackers can execute arbitrary commands via crafted FGFM reques...

CVE-2024-35277

HIGH CVSS 8.6 Jan 14, 2025

This vulnerability allows unauthenticated attackers to access configuration data of managed devices by sending specially crafted packets to Fortinet FortiPortal and FortiManager systems. It affects or...

CVE-2024-35273

HIGH CVSS 7.2 Jan 14, 2025

This vulnerability allows attackers to execute arbitrary code with elevated privileges on Fortinet FortiManager and FortiAnalyzer systems through specially crafted HTTP requests. It affects organizati...

CVE-2024-52964

MEDIUM CVSS 5.5 Aug 12, 2025

This path traversal vulnerability in Fortinet FortiManager and FortiManager Cloud allows authenticated remote attackers to overwrite arbitrary files via crafted FGFM requests. Attackers could potentia...

CVE-2024-33504

MEDIUM CVSS 4.1 Feb 11, 2025

This vulnerability in FortiManager allows attackers with JSON API access permissions to decrypt sensitive data due to hard-coded cryptographic keys. It affects FortiManager versions 7.6.0-7.6.1, 7.4.0...

CVE-2024-33503

MEDIUM CVSS 6.7 Jan 14, 2025

This vulnerability allows attackers to escalate privileges on Fortinet FortiManager and FortiAnalyzer systems by executing specific shell commands. Affected users are those running vulnerable versions...

CVE-2024-35275

MEDIUM CVSS 6.6 Jan 14, 2025

This SQL injection vulnerability in Fortinet FortiAnalyzer and FortiManager allows attackers to execute arbitrary SQL commands through specially crafted HTTP requests, potentially leading to privilege...