Vulnerabilities
Vulnerable Software
A server-side request forgery vulnerability [CWE-918] in Fortinet FortiClientEMS version 7.4.0 through 7.4.2 and before 7.2.6 may allow an authenticated attacker to perform internal requests via crafted HTTP or HTTPS requests.
CVSS Score
4.3
EPSS Score
0.0
Published
2025-06-10
An improper neutralization of input during web page generation ('Cross-site Scripting') [CWE-79] vulnerability in Fortinet FortiClient before 7.4.1 may allow the EMS administrator to send messages containing javascript code.
CVSS Score
2.7
EPSS Score
0.0
Published
2025-04-08


Contact Us

Shodan ® - All rights reserved