cbcvebase.
CVE-2023-27993
published 2023-05-03

CVE-2023-27993: A relative path traversal [CWE-23] in Fortinet FortiADC version 7.2.0 and before 7.1.1 allows a privileged attacker to delete arbitrary directories from the…

PriorityP335high7.1CVSS 3.1
AVLACLPRLUINSUCNIHAH
EPSS
0.23%
13.3th percentile
A relative path traversal [CWE-23] in Fortinet FortiADC version 7.2.0 and before 7.1.1 allows a privileged attacker to delete arbitrary directories from the underlying file system via crafted CLI commands.

Affected

12 ranges
VendorProductVersion rangeFixed in
fortinetfortiadc
fortinetfortiadc
fortinetfortiadc5.2.0 – 7.0.5
fortinetfortiadc5.3.0 – 5.3.7
fortinetfortiadc5.4.0 – 5.4.5
fortinetfortiadc6.0.0 – 6.0.4
fortinetfortiadc6.1.0 – 6.1.6
fortinetfortiadc6.2.0 – 6.2.6
fortinetfortiadc7.0.0 – 7.0.5
fortinetfortiadc>= 7.1.0 < 7.1.27.1.2
fortinetfortiadc7.1.0 – 7.1.1
fortinetfortinet
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.