CVE-2016-5092Path Traversal in Fortinet Fortiweb

CWE-22Path Traversal3 documents3 sources
Severity
4.9MEDIUMNVD
EPSS
0.3%
top 45.53%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 13
Latest updateMay 17

Description

Directory traversal vulnerability in Fortinet FortiWeb before 5.5.3 allows remote authenticated administrators with read and write privileges to read arbitrary files by leveraging the autolearn feature.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:NExploitability: 1.2 | Impact: 3.6

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-wp94-jv5c-2hph: Directory traversal vulnerability in Fortinet FortiWeb before 52022-05-17
CVEList
CVE-2016-5092: Directory traversal vulnerability in Fortinet FortiWeb before 52016-07-13
CVE-2016-5092 — Path Traversal in Fortinet Fortiweb | cvebase