Fortinet
Fortinet Public Exploits - CVE
FortiClient VPN
CVE-2025-52970 - FortiWeb auth bypass to RCE
CVE-2025-25256 - FortiSIEM
CVE-2025-25257 - Pre-Auth SQLi - FortiWeb

Detection
CVE-2025-32756 - RCE
FortiCamera
FortiMail
FortiNDR
FortiRecorder
FortiVoice
CVE-2024-55591 - FortiOS Authentication Bypass Vulnerable
CVE-2024-47575 - Fortimanager - Fortijump, Unauthenticated Remote Code Execution

CVE-2024-23666 - FortiManager - Insufficient authorization checks
CVE-2024-23108: Fortinet FortiSIEM Unauthenticated 2nd Order Command Injection
CVE-2024-21762 - FortiGate RCE
CVE-2023-48788 Fortinet FortiClient EMS SQL Injection Vulnerabilitiy
CVE-2023-42791 - FortiManager - Unrestricted File Upload
CVE-2023-27997 - FortiGate SSL-VPN
CVE-2022-40684 - Fortinet FortiOS, FortiProxy, and FortiSwitchManager
CVE-2022-39952 - Fortinet FortiNAC
CVE-2021-26088 - Improper Authentication in Fortinet Fortinet Single Sign-On
CVE-2018-13379 - FortiGate SSL-VPN
Interesting Books
Interesting BooksThe Web Application Hacker’s Handbook The go-to manual for web app pentesters. Covers XSS, SQLi, logic flaws, and more
Bug Bounty Bootcamp: The Guide to Finding and Reporting Web Vulnerabilities Learn how to perform reconnaissance on a target, how to identify vulnerabilities, and how to exploit them
Real-World Bug Hunting: A Field Guide to Web Hacking Learn about the most common types of bugs like cross-site scripting, insecure direct object references, and server-side request forgery.
Support this Gitbook
I hope it helps you as much as it has helped me. If you can support me in any way, I would deeply appreciate it.
Last updated




