• Filter by Date
  • Filter by Risk
  • Filter by Affected Product

PSIRT Advisories

The following is a list of advisories for issues resolved in Fortinet products. The resolution of such issues is coordinated by the Fortinet Product Security Incident Response Team (PSIRT), a dedicated, global team that manages the receipt, investigation, and public reporting of information about security vulnerabilities and issues related to Fortinet products and services.  

For details of how to raise a PSIRT Issue with Fortinet, please see our PSIRT Policy here.

An exposure of sensitive information to an unauthorized actor vulnerability in FortiGate may allow a remote authenticated attacker...

Jan 04, 2021 Risk IR Number: FG-IR-20-103
A blind SQL injection in the user interface of FortiWeb may allow an unauthenticated, remote attacker to execute arbitrary SQL...

Jan 04, 2021 Risk IR Number: FG-IR-20-124
A stack-based buffer overflow vulnerability in FortiWeb may allow an unauthenticated, remote attacker to overwrite the content...

Jan 04, 2021 Risk IR Number: FG-IR-20-125
A stack-based buffer overflow vulnerability in FortiWeb may allow a remote, unauthenticated attacker to crash the httpd daemon...

Jan 04, 2021 Risk IR Number: FG-IR-20-126
A format string vulnerability in FortiWeb may allow an authenticated, remote attacker to read the content of memory and retrieve...

Jan 04, 2021 Risk IR Number: FG-IR-20-123
An OS command injection vulnerability in FortiDeceptor may allow a remote authenticated attacker to execute arbitrary commands...

Jan 04, 2021 Risk IR Number: FG-IR-20-177