lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <54638cb3-3de2-3403-4f8e-2e2c19e94da0@vulnerability-lab.com> Date: Wed, 24 Aug 2016 14:08:44 +0200 From: Vulnerability Lab <research@...nerability-lab.com> To: fulldisclosure@...lists.org Subject: [FD] Fortinet Product Series Vulnerabilities - CVE-2016-3196 CVE-2016-3195 CVE-2016-3194 & CVE-2016-3193 FortiGuard Fortinet - Security Bulletins: http://fortiguard.com/advisory/forticloud-cross-site-script-persistent-web-vulnerabilities http://fortiguard.com/advisory/fortivoice-5-0-filter-bypass-persistent-web-vulnerabilities http://fortiguard.com/advisory/fortimanager-and-fortianalyzer-persistent-xss-vulnerability-1 http://fortiguard.com/advisory/fortimanager-and-fortianalyzer-xss-vulnerability http://fortiguard.com/advisory/fortimanager-and-fortianalyzer-client-side-xss-vulnerability http://fortiguard.com/advisory/fortimanager-and-fortianalyzer-persistent-xss-vulnerability CVE-IDs: CVE-2016-3196 ; CVE-2016-3195 ; CVE-2016-3194 & CVE-2016-3193 Vulnerability Lab - Security Advisories: http://www.vulnerability-lab.com/get_content.php?id=1687 http://www.vulnerability-lab.com/get_content.php?id=1684 http://www.vulnerability-lab.com/get_content.php?id=1686 http://www.vulnerability-lab.com/get_content.php?id=1685 http://www.vulnerability-lab.com/get_content.php?id=1735 http://www.vulnerability-lab.com/get_content.php?id=1842 Reference Article: http://www.securityweek.com/vulnerabilities-found-several-fortinet-products http://magazine.vulnerability-db.com/?q=articles/2016/08/08/fortinet-patches-series-remote-vulnerabilities-appliance-products Comments: Thanks to the fortinet psirt security department in the usa for coordinating the disclosure process! -- VULNERABILITY LABORATORY - RESEARCH TEAM SERVICE: www.vulnerability-lab.com _______________________________________________ Sent through the Full Disclosure mailing list https://nmap.org/mailman/listinfo/fulldisclosure Web Archives & RSS: http://seclists.org/fulldisclosure/