Fortinet FortiSOAR Agent Communication Bridge是美国飞塔(Fortinet)公司的一个自动化平台的代理通信组件。 Fortinet FortiSOAR Agent Communication Bridge 1.1.0版本和1.0所有版本存在路径遍历漏洞,该漏洞源于路径名限制不当,可能导致未经身份验证的攻击者通过向代理端口发送特制请求读取部署代理系统上fortisoar用户可访问的文件。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Fortinet | FortiSOAR Agent Communication Bridge | 1.1.0 |
cpe:2.3:a:fortinet:fortisoaragentcommunicationbridge:1.1.0:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-22627 | 7.7 HIGH | Fortinet FortiSwitchAXFixed 安全漏洞 |
| CVE-2026-24018 | 7.4 HIGH | Fortinet FortiClientLinux 安全漏洞 |
| CVE-2026-24017 | 7.3 HIGH | Fortinet FortiWeb 安全漏洞 |
| CVE-2025-54820 | 7.0 HIGH | Fortinet FortiManager 安全漏洞 |
| CVE-2026-22572 | 6.8 MEDIUM | Fortinet FortiManager多款产品 安全漏洞 |
| CVE-2026-25836 | 6.7 MEDIUM | Fortinet FortiSandbox Cloud 操作系统命令注入漏洞 |
| CVE-2025-66178 | 6.7 MEDIUM | Fortinet FortiWeb 操作系统命令注入漏洞 |
| CVE-2025-68648 | 6.5 MEDIUM | Fortinet多款产品 格式化字符串错误漏洞 |
| CVE-2025-48418 | 6.4 MEDIUM | Fortinet多款产品 安全漏洞 |
| CVE-2025-68482 | 6.3 MEDIUM | Fortinet FortiManager和Fortinet FortiAnalyzer 信任管理问题漏洞 |
| CVE-2026-25689 | 6.0 MEDIUM | Fortinet FortiDeceptor 参数注入漏洞 |
| CVE-2026-24640 | 5.9 MEDIUM | Fortinet FortiWeb 安全漏洞 |
| CVE-2026-30897 | 5.9 MEDIUM | Fortinet FortiWeb 安全漏洞 |
| CVE-2025-49784 | 5.6 MEDIUM | Fortinet FortiAnalyzer和Fortinet FortiAnalyzer-BigData SQL注入漏洞 |
| CVE-2026-22628 | 5.1 MEDIUM | Fortinet FortiSwitchAXFixed 访问控制错误漏洞 |
| CVE-2025-48840 | 5.0 MEDIUM | Fortinet FortiWeb 安全漏洞 |
| CVE-2025-53608 | 4.6 MEDIUM | Fortinet FortiSandbox 跨站脚本漏洞 |
| CVE-2026-25972 | 4.1 MEDIUM | Fortinet FortiSIEM 跨站脚本漏洞 |
| CVE-2025-55717 | 3.8 LOW | Fortinet多款产品 安全漏洞 |
| CVE-2026-22629 | 3.4 LOW | Fortinet多款产品 安全漏洞 |
Showing top 20 of 22 CVEs. View all on vendor page → →
No comments yet