Fortinet black logo

Resolved Issues

Resolved Issues

The following issues have been fixed in 5.3.7. For inquires about a particular bug, please contact Fortinet Customer Service & Support.

Bug ID

Description

625130

User cannot hide DNS Filter column on Policy listing page.

626378

Rating Options and Proxy Options settings are changed when a Web filter object is edited on FortiPortal.

635412

URL Profile Local Categories should remove the disable option.

643045

Application Control profile may be different between FortiManager and FortiPortal.

643535

When the login session has expired on FortiPortal, the ADOM on FortiManager is still locked.

657382

Collector database logs are not overwritten as per the configuration and it can exceed more than 100%.

662669

FortiPortal returns error, "Cannot fetch valid original ADOM version", when trying to navigate to policy from the customer portal.

677553

FortiPortal is unable to add or view an address group within another address group.

678008

FortiPortal is unable to nest a service group under another service group.

678345

In the Audit tab, CSV may show different timestamp.

683978

Admin settings fail to save changes when customers' allocated storage exceeds total storage.

687787

Static route are not filtered when comment contains filter keywords.

692987

FortiPortal may fail to restart if remote SAML is configured in previous releases.

696107

User with read-only role may not be able to view Web filter profile when FortiManager ADOM is locked.

696577

Customer's cloud usage widget shows high value when database size is below storage value.

697487

FortiPortal with multiple devices may disassociate from their respective customers and sites.

698104

When a user creates or edits IPS object's filter or signature, and sets Action to either Monitor or Quarantine, the action is incorrectly saved.

700042

FortiPortal may not be able to load list of application control signatures.

700067

Policies may be duplicated when one site includes multiple VDOM devices, and they are under the same ADOM and policy package on FortiManager.

705622

Revision Backup dialog is stuck when assigning devices under one ADOM to multiple customers.

708918

Security Profiles with special characters not showing correctly on FortiPortal.

709201

IPS Signatures may be lost within IPS sensor profile.

711244

Collector may not support FortiGate-2200E in the log field.

721028

FortiPortal may not be able to switch to collector mode.

731200

Logs of newly added FortiGate devices may be missing in the collector.

Common vulnerabilities and exposures

Visit https://fortiguard.com/psirt for more information.

Bug ID

CVE references

634983

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • FG-IR-20-066

724703

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • FG-IR-21-085

725006

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • CVE-2021-26104

726282

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • TMP-2021-2570

726987, 725939, 724750, 725087, 725398, 724140, 724456

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • CVE-2021-32590

727382

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • CVE-2021-32596

728744

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • CVE-2021-36171

729603

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • TMP-2021-2590

730561

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • CVE-2021-36181

731189

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • CVE-2021-36172

732577

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • TMP-2021-2607

733574

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • CVE-2021-36174

Resolved Issues

The following issues have been fixed in 5.3.7. For inquires about a particular bug, please contact Fortinet Customer Service & Support.

Bug ID

Description

625130

User cannot hide DNS Filter column on Policy listing page.

626378

Rating Options and Proxy Options settings are changed when a Web filter object is edited on FortiPortal.

635412

URL Profile Local Categories should remove the disable option.

643045

Application Control profile may be different between FortiManager and FortiPortal.

643535

When the login session has expired on FortiPortal, the ADOM on FortiManager is still locked.

657382

Collector database logs are not overwritten as per the configuration and it can exceed more than 100%.

662669

FortiPortal returns error, "Cannot fetch valid original ADOM version", when trying to navigate to policy from the customer portal.

677553

FortiPortal is unable to add or view an address group within another address group.

678008

FortiPortal is unable to nest a service group under another service group.

678345

In the Audit tab, CSV may show different timestamp.

683978

Admin settings fail to save changes when customers' allocated storage exceeds total storage.

687787

Static route are not filtered when comment contains filter keywords.

692987

FortiPortal may fail to restart if remote SAML is configured in previous releases.

696107

User with read-only role may not be able to view Web filter profile when FortiManager ADOM is locked.

696577

Customer's cloud usage widget shows high value when database size is below storage value.

697487

FortiPortal with multiple devices may disassociate from their respective customers and sites.

698104

When a user creates or edits IPS object's filter or signature, and sets Action to either Monitor or Quarantine, the action is incorrectly saved.

700042

FortiPortal may not be able to load list of application control signatures.

700067

Policies may be duplicated when one site includes multiple VDOM devices, and they are under the same ADOM and policy package on FortiManager.

705622

Revision Backup dialog is stuck when assigning devices under one ADOM to multiple customers.

708918

Security Profiles with special characters not showing correctly on FortiPortal.

709201

IPS Signatures may be lost within IPS sensor profile.

711244

Collector may not support FortiGate-2200E in the log field.

721028

FortiPortal may not be able to switch to collector mode.

731200

Logs of newly added FortiGate devices may be missing in the collector.

Common vulnerabilities and exposures

Visit https://fortiguard.com/psirt for more information.

Bug ID

CVE references

634983

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • FG-IR-20-066

724703

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • FG-IR-21-085

725006

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • CVE-2021-26104

726282

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • TMP-2021-2570

726987, 725939, 724750, 725087, 725398, 724140, 724456

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • CVE-2021-32590

727382

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • CVE-2021-32596

728744

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • CVE-2021-36171

729603

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • TMP-2021-2590

730561

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • CVE-2021-36181

731189

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • CVE-2021-36172

732577

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • TMP-2021-2607

733574

FortiPortal 5.3.7 is no longer vulnerable to the following CVE-Reference:

  • CVE-2021-36174