Fortinet FortiWeb是美国Fortinet公司的一款Web应用防火墙产品。 Fortinet FortiWeb存在授权问题漏洞,该漏洞源于身份验证不当,可能导致远程未认证攻击者使用随机用户名和密码登录Fortiweb GUI/CLI。以下版本受到影响:8.0.0至8.0.2版本、7.6.0至7.6.6版本、7.4.0至7.4.11版本、7.2.0至7.2.12版本和7.0.0至7.0.12版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-70465 | 7.3 HIGH | Fortinet forticlientwindows 缓冲区错误漏洞 |
| CVE-2026-70468 | 7.3 HIGH | Fortinet fortimanager 授权问题漏洞 |
| CVE-2026-71407 | 5.1 MEDIUM | Fortinet FortiOS 缓冲区错误漏洞 |
| CVE-2026-71408 | 5.0 MEDIUM | Fortinet FortiOS 资源管理错误漏洞 |
| CVE-2026-70466 | 4.8 MEDIUM | Fortinet FortiWeb 输入验证错误漏洞 |
| CVE-2026-70467 | 3.4 LOW | Fortinet fortisiem 服务端请求伪造漏洞 |
No comments yet