Fortinet FortiProxy是美国飞塔(Fortinet)公司的一种安全的网络代理,通过结合多种检测技术,如Web过滤、DNS过滤、DLP、反病毒、入侵防御和高级威胁保护,可以保护员工免受网络攻击。FortiProxy有助于减少带宽需求,并通过内容和视频缓存优化网络。 Fortinet FortiProxy存在安全漏洞,该漏洞源于凭据保护不足,导致攻击者可以通过社会工程攻击执行未经授权的代码或命令。受影响的产品和版本:Fortinet FortiProxy 7.4.0版本,7.2.0至7.2.6
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Fortinet | FortiOS | 7.4.0 ~ 7.4.1 | - |
|
| Fortinet | FortiProxy | 7.4.0 ~ 7.4.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-45590 | 9.4 CRITICAL | Fortinet FortiClient 代码注入漏洞 |
| CVE-2024-21756 | 8.6 HIGH | Fortinet FortiSandbox 操作系统命令注入漏洞 |
| CVE-2024-21755 | 8.6 HIGH | Fortinet FortiSandbox 安全漏洞 |
| CVE-2024-23671 | 7.9 HIGH | Fortinet FortiSandbox 路径遍历漏洞 |
| CVE-2023-47541 | 6.5 MEDIUM | Fortinet FortiSandbox 路径遍历漏洞 |
| CVE-2023-47540 | 6.5 MEDIUM | Fortinet FortiSandbox 操作系统命令注入漏洞 |
| CVE-2023-47542 | 6.3 MEDIUM | Fortinet FortiManager 安全漏洞 |
| CVE-2023-48784 | 6.1 MEDIUM | Fortinet FortiOS 格式化字符串错误漏洞 |
| CVE-2024-31487 | 5.8 MEDIUM | Fortinet FortiSandbox 路径遍历漏洞 |
| CVE-2024-23662 | 5.0 MEDIUM | Fortinet FortiOS 信息泄露漏洞 |
No comments yet