Skip to main content

Vendor/product archive

fortinet / fortinac-f CVEs

Beta · best-effort

13 CVEs tagged to fortinet / fortinac-f2 Critical, 2 High, 8 Medium, 1 Low, 0 Unrated.

CVE-2026-21741

Published Apr 14, 2026

An URL Redirection to Untrusted Site ('Open Redirect') vulnerability [CWE-601] vulnerability in Fortinet FortiNAC-F 7.6.0 through 7.6.5, FortiNAC-F 7.4 all versions, FortiNAC-F 7.…

CVSS 2.4 · Low
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-24858

Published Jan 27, 2026

An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.5, FortiAnalyzer 7.4.0 through 7.4.9,…

CVSS 9.8 · Critical
evidence mentions
18
Buzz score
74.4
KEV listed

CVE-2023-48785

Published Mar 14, 2025

An improper certificate validation vulnerability [CWE-295] in FortiNAC-F version 7.2.4 and below may allow a remote and unauthenticated attacker to perform a Man-in-the-Middle att…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-22633

Published Jun 13, 2023

An improper permissions, privileges, and access controls vulnerability [CWE-264] in FortiNAC-F 7.2.0, FortiNAC 9.4.1 and below, 9.2.6 and below, 9.1.8 and below, 8.8.0 all version…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-26203

Published May 3, 2023

A use of hard-coded credentials vulnerability [CWE-798] in FortiNAC-F version 7.2.0, FortiNAC version 9.4.2 and below, 9.2 all versions, 9.1 all versions, 8.8 all versions, 8.7 al…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-22637

Published May 3, 2023

An improper neutralization of input during web page generation ('Cross-site Scripting') vulnerability [CWE-79] in FortiNAC-F version 7.2.0, FortiNAC version 9.4.2 and below, 9.2 a…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-45859

Published May 3, 2023

An insufficiently protected credentials vulnerability [CWE-522] in FortiNAC-F 7.2.0, FortiNAC 9.4.1 and below, 9.2.6 and below, 9.1.8 and below, 8.8.0 all versions, 8.7.0 all vers…

CVSS 4.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-43950

Published May 3, 2023

A URL redirection to untrusted site ('Open Redirect') vulnerability [CWE-601] in FortiNAC-F version 7.2.0, FortiNAC version 9.4.1 and below, 9.2 all versions, 9.1 all versions,…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-43951

Published Apr 11, 2023

An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiNAC 9.4.1 and below, 9.2.6 and below, 9.1.8 and below, 8.8.11 and below, 8.7.6 and be…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-40675

Published Feb 16, 2023

Some cryptographic issues in Fortinet FortiNAC versions 9.4.0 through 9.4.1, 9.2.0 through 9.2.7, 9.1.0 through 9.1.8, 8.8.0 through 8.8.11, 8.7.0 through 8.7.6, 8.6.0 through 8.6…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-39954

Published Feb 16, 2023

An improper restriction of xml external entity reference in Fortinet FortiNAC version 9.4.0 through 9.4.1, FortiNAC version 9.2.0 through 9.2.7, FortiNAC version 9.1.0 through 9.1…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2022-38375

Published Feb 16, 2023

An improper authorization vulnerability [CWE-285]  in Fortinet FortiNAC version 9.4.0 through 9.4.1 and before 9.2.6 allows an unauthenticated user to perform some administrative…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-13 of 13 CVEsPage 1 of 1