PSIRT Advisories

Monthly PSIRT Advisories

The following is a list of advisories for issues resolved in Fortinet products. The resolution of such issues is coordinated by the Fortinet Product Security Incident Response Team (PSIRT), a dedicated, global team that manages the receipt, investigation, and public reporting of information about security vulnerabilities and issues related to Fortinet products and services.  

For details of how to raise a PSIRT Issue with Fortinet, please see our PSIRT Policy here.

A new side-channel attack that takes advantage of the speculative execution feature of modern processors to recover data f...

Apr 03, 2018 Risk IR Number: FG-IR-18-067
The FortiOS web proxy disclaimer page is potentially vulnerable to an XSS attack, via maliciously crafted "Host" headers i...

FortiOS 5.6.2, 5.6.1, 5.6.0, 5.4.7, 5.4.6, 5.4.5, 5.4.4, 5.4.3, 5.4.2, 5.4.1, 5.4.0, 5.2.9, 5.2.8, 5.2.7, 5.2.6, 5.2.5, 5.2.4, 5.2.3, 5.2.2, 5.2.15, 5.2.14, 5.2.13, 5.2.12, 5.2.11, 5.2.10, 5.2.1, 5.2.0
Jan 22, 2018 Risk IR Number: FG-IR-17-262 CVE-2017-14190
Intel recently released a security update (Intel-SA-00086), regarding Intel ME 11.x, SPS 4.0, and TXE 3.0 intel products.T...

Jan 04, 2018 Risk IR Number: FG-IR-17-271
Two XSS vulnerabilities were reported to us affecting FortiOS that can be exploited to load and run a remote (malicious) J...

Jun 15, 2017 Risk IR Number: FG-IR-17-127 CVE-2017-7734
FortiOS is subject to a Cross-Site Scripting vulnerability,  due to an improperly sanitized parameter in a hidden CLI conf...

FortiOS 5.2.9, 5.2.8, 5.2.7, 5.2.6, 5.2.5, 5.2.4, 5.2.3, 5.2.2, 5.2.10, 5.2.1, 5.2.0, 5.0.9, 5.0.8, 5.0.7, 5.0.6, 5.0.5, 5.0.4, 5.0.3, 5.0.2, 5.0.14, 5.0.13, 5.0.12, 5.0.11, 5.0.10, 5.0.1, 5.0.0
May 17, 2017 Risk IR Number: FG-IR-17-057 CVE-2017-3128
The FortiAnalyzer and FortiManager WebUI accept a user-controlled input that specifies a link to an external site, and use...

Apr 26, 2017 Risk IR Number: FG-IR-17-014 CVE-2017-3126
An XSS vulnerability caused by the scrintf parameter input during Firewall Policy Creation can be exploited to load and ru...

FortiOS 5.2.9, 5.2.8, 5.2.7, 5.2.6, 5.2.5, 5.2.4, 5.2.3, 5.2.2, 5.2.10, 5.2.1, 5.2.0
Apr 19, 2017 Risk IR Number: FG-IR-17-017 CVE-2017-3127
A race condition in the tty_ioctl function in drivers/tty/tty_io.c in the Linux kernel may allow local users to obtain sen...

Apr 05, 2017 Risk IR Number: FG-IR-16-013 CVE-2016-0723
The first launch of FortiClient SSLVPN Linux creates a log file without any prior check. By previously creating a symbolic...

Apr 05, 2017 Risk IR Number: FG-IR-16-069 CVE-2016-8496
ntp released an announcement on 26th April 2016, describing 4 low and 7 medium severity vulnerabilities, as listed below: ...

Apr 03, 2017 Risk IR Number: FG-IR-16-035 CVE-2015-7704
A cross-site-scripting vulnerablity in FortiAnalyzer/FortiManager in advanced settings page could allow an administrator t...

Oct 05, 2016 Risk IR Number: FG-IR-16-051 CVE-2015-7363
One of the processes in FortiClient stores VPN credentials unencrypted in memory. A malicious attacker who compromised the...

Sep 12, 2016 Risk IR Number: FG-IR-16-021
OpenSSL released an update in January 2016 to address one high and one low severity vulnerabilities.

Jul 12, 2016 Risk IR Number: FG-IR-16-012 CVE-2016-0701
A path traversal vulnerability allows an administrator account with read and write privileges to read arbitrary files usin...

May 26, 2016 Risk IR Number: FG-IR-16-009 CVE-2016-5092
FortiOS now includes for all SSL libraries a countermeasure against Lenstra's fault attack on RSA-CRT optimization when a...

May 16, 2016 Risk IR Number: FG-IR-16-008 CVE-2015-5738