Home/Product/fortinet fortinac f
Product

fortinet fortinac f

12 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-21741
>= 7.2.0 and < 7.6.6
An URL Redirection to Untrusted Site ('Open Redirect') vulnerability [CWE-601] vulnerability in Fortinet FortiNAC-F 7.6.0 through
2.4LOW
CVE-2023-48785
>= 7.2.0 and < 7.2.5
An improper certificate validation vulnerability [CWE-295] in FortiNAC-F version 7.2.4 and below may allow a remote and unauthenti
4.8MEDIUM
CVE-2023-22633
all versions
An improper permissions, privileges, and access controls vulnerability [CWE-264] in FortiNAC-F 7.2.0, FortiNAC 9.4.1 and below, 9.
7.5HIGH
CVE-2023-26203
all versions
A use of hard-coded credentials vulnerability [CWE-798] in FortiNAC-F version 7.2.0, FortiNAC version 9.4.2 and below, 9.2 all ver
6.7MEDIUM
CVE-2023-22637
all versions
An improper neutralization of input during web page generation ('Cross-site Scripting') vulnerability [CWE-79] in FortiNAC-F versi
6.5MEDIUM
CVE-2022-45860
all versions
A weak authentication vulnerability [CWE-1390] in FortiNAC-F version 7.2.0, FortiNAC version 9.4.2 and below, 9.2 all versions, 9.
5.3MEDIUM
CVE-2022-45859
all versions
An insufficiently protected credentials vulnerability [CWE-522] in FortiNAC-F 7.2.0, FortiNAC 9.4.1 and below, 9.2.6 and below, 9.
4.1MEDIUM
CVE-2022-43950
all versions
A URL redirection to untrusted site ('Open Redirect') vulnerability [CWE-601] in FortiNAC-F version 7.2.0, FortiNAC version 9.4.1
4.3MEDIUM
CVE-2022-43951
< 7.2.0
An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiNAC 9.4.1 and below, 9.2.6 and below
5.3MEDIUM
CVE-2022-40675
< 7.2.0
Some cryptographic issues in Fortinet FortiNAC versions 9.4.0 through 9.4.1, 9.2.0 through 9.2.7, 9.1.0 through 9.1.8, 8.8.0 throu
6.5MEDIUM
CVE-2022-39954
< 7.2.0
An improper restriction of xml external entity reference in Fortinet FortiNAC version 9.4.0 through 9.4.1, FortiNAC version 9.2.0
7.3HIGH
CVE-2022-38375
< 7.2.0
An improper authorization vulnerability [CWE-285] in Fortinet FortiNAC version 9.4.0 through 9.4.1 and before 9.2.6 allows an un
9.1CRITICAL
threatengine.sh