7 Vulnerabilitities in Fortinet VPN and Edge devices found

SOFTWARE/COMPANY:
Fortinet

SOFTWARE LINK(s):
https://www.fortiguard.com/psirt/FG-IR-20-229e
https://www.fortiguard.com/psirt/FG-IR-20-232
https://www.fortiguard.com/psirt/FG-IR-20-125
https://www.fortiguard.com/psirt/FG-IR-20-177
https://www.fortiguard.com/psirt/FG-IR-20-123
https://www.fortiguard.com/psirt/FG-IR-20-126
https://www.fortiguard.com/psirt/FG-IR-20-124

NEWS LINK(s):
https://www.bleepingcomputer.com/news/security/fortinet-fixes-critical-vulnerabilities-in-ssl-vpn-and-web-firewall/

CVEs:
CVE-2018-13383 – DoS, RCE – FortiProxy SSL VPN
CVE-2018-13381 – DoS – FortiProxy SSL VPN
CVE-2020-29015 – SQL Injection – FortiWeb
CVE-2020-29016 – RCE – FortiWeb 6.3.5
CVE-2020-29017 – RCE – FortiDeceptor
CVE-2020-29018 – RCE – FortiWeb
CVE-2020-29019 – DoS – FortiWeb

NOTES:
Two of these vulnerabilitiesw had dates for their publishing back to 2019, the rest are recent findings from January.