📦 Fortiwan

by Fortinet

🔍 What is Fortiwan?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-26102

CRITICAL CVSS 9.8 Dec 19, 2024

A relative path traversal vulnerability in FortiWAN allows unauthenticated remote attackers to delete system files via crafted POST requests. Deleting specific configuration files resets the admin pas...

CVE-2021-26114

CRITICAL CVSS 9.8 Apr 6, 2022

This is a critical SQL injection vulnerability in FortiWAN that allows unauthenticated attackers to execute arbitrary SQL commands via crafted HTTP requests. Attackers could potentially execute unauth...

CVE-2023-44251

HIGH CVSS 8.3 Dec 13, 2023

This path traversal vulnerability in Fortinet FortiWAN allows authenticated attackers to read and delete arbitrary files on the system via crafted HTTP/HTTPS requests. Affected systems include FortiWA...

CVE-2022-33869

HIGH CVSS 8.8 Feb 16, 2023

This vulnerability allows authenticated attackers to execute arbitrary operating system commands on FortiWAN devices by injecting malicious arguments into legitimate management interface commands. It ...

CVE-2021-32585

HIGH CVSS 7.2 Apr 6, 2022

This stored cross-site scripting (XSS) vulnerability in FortiWAN allows attackers to inject malicious scripts into web pages via crafted HTTP requests. When users view these compromised pages, the scr...

CVE-2021-24009

HIGH CVSS 7.2 Apr 6, 2022

This vulnerability allows authenticated attackers to execute arbitrary operating system commands on FortiWAN devices through the web GUI. Attackers can gain full system control by sending specially cr...