Fortinet 3월 보안 취약점 공지
No. 발생일 취약점 이름 심각도 CVE 코드 영향받는 제품 1 2026-03-10 Stack-based Buffer Overflow in API protection Medium CVE-2026-24640 FortiWeb 8.0.0 ~ 8.0.2, 7.6.0 ~ 7.6.6, 7.4, 7.2, 7.0.2 ~ 70.12 2 2026-03-10 Stack buffer overflow in API Medium CVE-2026-30897 FortiWeb 8.0.0 ~ 8.0.3, 7.6.0 ~ 7.6.6, 7.4.0 ~ 7.4.11, 7.2, 7.0 3 2026-03-10 SQL injection in jsonrpc api Medium CVE-2025-49784 FortiAnalyzer, FortiAnalyzer-BigData 4 2026-03-10 Reflected Cross Site Scripting (XSS) in error page Medium CVE-2026-25972 FortiSIEM (7.4.0, 7.3.0~7.3.4) 5 2026-03-10 Protected hostname bypass Medium CVE-2025-48840 FortiWeb 7.6, 7.4, 7.2, 7.0 6 2026-03-10 Privilege escalation using undocumented CLI command Medium CVE-2025-48418 FortiAnalyzer, FortiManager 및 해당 Cloud 제품군 (7.6, 7.4, 7.2, 7.0, 6.4 버전) 7 2026-03-10 Path traversal vulnerability in FortiSOAR Agent Connector Bridge server Medium CVE-2025-54659 FortiSOAR Agent Communication Bridge 1.0, 1.1.0 8 2026-03-10 OS command injection on vmimages update feature Medium CVE-2026-25836 FortiSandbox Cloud 5.0.4 9 2026-03-10 OS Command injection in FortiWeb API Medium CVE-2025-66178 FortiWeb (8.0, 7.6, 7.4, 7.2, 7.0) 10 2026-03-10 Null Pointer Dereference in Anti-Defacement feature Low CVE-2026-24641 FortiWeb 11 2026-03-10 MFA Bypass in GUI Medium CVE-2026-22572 FortiManager, FortiAnalyzer 12 2026-03-10 Local privilege escalation via improper symlink following High CVE-2026-24018 FortiClientLinux 13 2026-03-10 Lack of TLS Certificate Validation during initial SSO Authentication Medium CVE-2025-68482 FortiAnalyzer, FortiManager 14 2026-03-10 Insecure Exposure of Plaintext Passwords in Debug Logs Low CVE-2025-55717 FortiMail, FortiRecorder, FortiVoice 15 2026-03-10 Format string vulnerability in fazsvcd Medium CVE-2025-68648 FortiAnalyzer, FortiAnalyzer Cloud, FortiManager, FortiManager Cloud 16 2026-03-10 Buffer overflow via fgtupdates service High CVE-20...
수, 3월 11, 2026 시간: 10:53 AM