• Filter by Date
  • Filter by Risk

PSIRT Advisories

The FortiGuard Labs Product Security Incident Response Team (PSIRT) continually test Fortinet hardware and software products, looking for vulnerabilities and weaknesses. Any such findings are fed back to Fortinet's development teams and serious issues are described along with protective solutions in the advisories below.

FortiGate firmware (FortiOS) released before Aug 2012 has a cookie parser buffer overflow vulnerability. This vulnerability, when...

Aug 17, 2016 Risk IR Number: FG-IR-16-023
Forticloud online service before May 3, 2016 was exposed to cross site scripting web vulnerabilities, which could allow malicious...

Aug 09, 2016 Risk IR Number: FG-IR-16-022
A vulnerablity in FortiVoice 5.0 web-application could allow malicious script being injected in the affected module; this potentially...

Aug 09, 2016 Risk IR Number: FG-IR-16-020
An XSS vulnerablity in FortiManager/FortiAnalyzer could allow privileged guest user accounts and restricted user accounts to inject...

Aug 09, 2016 Risk IR Number: FG-IR-16-016
A vulnerablity in FortiManager/FortiAnalyzer address added page could allow malicious script being injected in the input field;...

Aug 09, 2016 Risk IR Number: FG-IR-16-017
A client side XSS vulnerablity in FortiManager/FortiAnalyzer could allow malicious script being injected in the Web-UI; this potentially...

Aug 09, 2016 Risk IR Number: FG-IR-16-015