A relative path traversal vulnerability [CWE-23] in FortiWeb 7.0.0 through 7.0.1, 6.3.6 through 6.3.18, 6.4 all versions may allow an authenticated attacker to obtain unauthorized access to files and data via specifically crafted HTTP GET requests.
References
| Link | Resource |
|---|---|
| https://fortiguard.com/psirt/FG-IR-22-136 | Patch Vendor Advisory |
| https://fortiguard.com/psirt/FG-IR-22-136 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2023-02-16 19:15
Updated : 2024-11-21 07:02
NVD link : CVE-2022-30300
Mitre link : CVE-2022-30300
CVE.ORG link : CVE-2022-30300
JSON object : View
Products Affected
fortinet
- fortiweb
