Vulnerabilities > Fortinet

DATE CVE VULNERABILITY TITLE RISK
2006-06-24 CVE-2006-3222 Unspecified vulnerability in Fortinet Fortios
The FTP proxy module in Fortinet FortiOS (FortiGate) before 2.80 MR12 and 3.0 MR2 allows remote attackers to bypass anti-virus scanning via the Enhanced Passive (EPSV) FTP mode.
network
low complexity
fortinet
5.0
2006-04-21 CVE-2006-1966 Denial-Of-Service vulnerability in Fortinet28
An unspecified Fortinet product, possibly Fortinet28, allows remote attackers to cause a denial of service via a "small synflood" to the SMTP port (TCP port 25), as demonstrated by a 10-microsecond wait between sending packets.
network
low complexity
fortinet
5.0
2005-12-31 CVE-2005-3058 Permissions, Privileges, and Access Controls vulnerability in Fortinet Fortigate and Fortios
Interpretation conflict in Fortinet FortiGate 2.8, running FortiOS 2.8MR10 and v3beta, allows remote attackers to bypass the URL blocker via an (1) HTTP request terminated with a line feed (LF) and not carriage return line feed (CRLF) or (2) HTTP request with no Host field, which is still processed by most web servers without violating RFC2616.
network
low complexity
fortinet CWE-264
7.5
2005-12-31 CVE-2005-3057 Unspecified vulnerability in Fortinet Fortigate and Fortios
The FTP component in FortiGate 2.8 running FortiOS 2.8MR10 and v3beta, and other versions before 3.0 MR1, allows remote attackers to bypass the Fortinet FTP anti-virus engine by sending a STOR command and uploading a file before the FTP server response has been sent, as demonstrated using LFTP.
network
low complexity
fortinet
critical
10.0
2005-12-29 CVE-2005-4570 Denial Of Service vulnerability in Multiple Fortinet Products IKE Exchange
The Internet Key Exchange version 1 (IKEv1) implementations in Fortinet FortiOS 2.50, 2.80 and 3.0, FortiClient 2.0,; and FortiManager 2.80 and 3.0 allow remote attackers to cause a denial of service (termination of a process that is automatically restarted) via IKE packets with invalid values of certain IPSec attributes, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1.
network
low complexity
fortinet
7.8
2005-11-01 CVE-2005-3400 Security Bypass vulnerability in Fortinet 2.48.0.0
Multiple interpretation error in Fortinet 2.48.0.0 allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an "MZ" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a "triple headed" program that contains EXE, EML, and HTML content, aka the "magic byte bug."
network
low complexity
fortinet
5.0
2005-10-14 CVE-2005-3221 Security Bypass vulnerability in Fortinet Antivirus
Multiple interpretation error in unspecified versions of Fortinet Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.
network
high complexity
fortinet
5.1
2005-06-01 CVE-2005-1837 Remote Security vulnerability in Fortinet Firewall
Fortinet firewall running FortiOS 2.x contains a hardcoded username with the password set to the serial number, which allows local users with console access to gain privileges.
network
low complexity
fortinet
7.5