CVE-2024-45330: Fortinet Fortianalyzer

High severity, CVSS 7.2. EPSS: 0.6% chance of exploitation in the next 30 days.

A use of externally-controlled format string in Fortinet FortiAnalyzer versions 7.4.0 through 7.4.3, 7.2.2 through 7.2.5 allows attacker to escalate its privileges via specially crafted requests.

Affected products

  • Fortinet Fortianalyzer: from 7.2.2, up to and including 7.2.5; from 7.4.0, up to and including 7.4.3
  • Fortinet Fortianalyzer Cloud: from 7.2.2, up to and including 7.2.6; from 7.4.1, up to and including 7.4.3

Published 2024-10-08. Last modified 2026-06-17.