CVE-2025-68649
published 2026-04-14CVE-2025-68649: An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.4, FortiAnalyzer…
PriorityP341medium6.5CVSS 3.1
AVNACLPRHUINSUCNIHAH
EPSS
0.41%
33.5th percentile
An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.4, FortiAnalyzer 7.4.0 through 7.4.7, FortiAnalyzer 7.2 all versions, FortiAnalyzer 7.0 all versions, FortiAnalyzer Cloud 7.6.0 through 7.6.4, FortiAnalyzer Cloud 7.4.0 through 7.4.7, FortiAnalyzer Cloud 7.2 all versions, FortiAnalyzer Cloud 7.0 all versions, FortiManager 7.6.0 through 7.6.4, FortiManager 7.4.0 through 7.4.7, FortiManager 7.2 all versions, FortiManager 7.0 all versions, FortiManager Cloud 7.6.0 through 7.6.4, FortiManager Cloud 7.4.0 through 7.4.7, FortiManager Cloud 7.2 all versions, FortiManager Cloud 7.0 all versions may allow a privileged attacker to delete files from the underlying filesystem via crafted CLI requests.
Affected
27 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fortinet | fortianalyzer | — | — |
| fortinet | fortianalyzer | >= 7.0.0 < 7.4.8 | 7.4.8 |
| fortinet | fortianalyzer | 7.0.0 – 7.0.16 | — |
| fortinet | fortianalyzer | 7.2.0 – 7.2.12 | — |
| fortinet | fortianalyzer | 7.4.0 – 7.4.7 | — |
| fortinet | fortianalyzer | >= 7.6.0 < 7.6.5 | 7.6.5 |
| fortinet | fortianalyzer | 7.6.0 – 7.6.4 | — |
| fortinet | fortianalyzer_cloud | — | — |
| fortinet | fortianalyzer_cloud | >= 7.0.0 < 7.4.8 | 7.4.8 |
| fortinet | fortianalyzer_cloud | 7.0.1 – 7.0.16 | — |
| fortinet | fortianalyzer_cloud | 7.2.1 – 7.2.12 | — |
| fortinet | fortianalyzer_cloud | 7.4.1 – 7.4.7 | — |
| fortinet | fortianalyzer_cloud | >= 7.6.0 < 7.6.5 | 7.6.5 |
| fortinet | fortimanager | — | — |
| fortinet | fortimanager | >= 7.0.0 < 7.4.8 | 7.4.8 |
| fortinet | fortimanager | 7.0.0 – 7.0.16 | — |
| fortinet | fortimanager | 7.2.0 – 7.2.12 | — |
| fortinet | fortimanager | 7.4.0 – 7.4.7 | — |
| fortinet | fortimanager | >= 7.6.0 < 7.6.5 | 7.6.5 |
| fortinet | fortimanager | 7.6.0 – 7.6.4 | — |
| fortinet | fortimanager_cloud | >= 7.0.0 < 7.4.8 | 7.4.8 |
| fortinet | fortimanager_cloud | 7.0.1 – 7.0.16 | — |
| fortinet | fortimanager_cloud | 7.2.1 – 7.2.12 | — |
| fortinet | fortimanager_cloud | 7.4.1 – 7.4.7 | — |
| fortinet | fortimanager_cloud | >= 7.6.0 < 7.6.5 | 7.6.5 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-w5r2-jfhj-qppp: An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiAnalyzer 7
ghsa_unreviewed·2026-04-14
CVE-2025-68649 [MEDIUM] CWE-22 GHSA-w5r2-jfhj-qppp: An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiAnalyzer 7
An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.4, FortiAnalyzer 7.4.0 through 7.4.7, FortiAnalyzer 7.2 all versions, FortiAnalyzer 7.0 all versions, FortiAnalyzer Cloud 7.6.0 through 7.6.4, FortiAnalyzer Cloud 7.4.0 through 7.4.7, FortiAnalyzer Cloud 7.2 all versions, FortiAnalyzer Cloud 7.0 all versions, FortiManager 7.6.0 through 7.6.4, FortiManager 7.4.0 through 7.4.7, FortiManager 7.2 all versions, FortiManager 7.0 all versions, FortiManager Cloud 7.6.0 through 7.6.4, FortiManager Cloud 7.4.0 through 7.4.7, FortiManager Cloud 7.2 all versions, FortiManager Cloud 7.0 all versions may allow a privileged attacker to delete files from the underlying filesystem via crafted CLI requests.
Fortinet
Path Traversal in CLI
vendor_fortinet·2026-04-14·CVSS 6.0
CVE-2025-68649 [MEDIUM] CWE-22 Path Traversal in CLI
FG-IR-26-120: Path Traversal in CLI
An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.4, FortiAnalyzer 7.4.0 through 7.4.7, FortiAnalyzer 7.2 all versions, FortiAnalyzer 7.0 all versions, FortiAnalyzer Cloud 7.6.0 through 7.6.4, FortiAnalyzer Cloud 7.4.0 through 7.4.7, FortiAnalyzer Cloud 7.2 all versions, FortiAnalyzer Cloud 7.0 all versions, FortiManager 7.6.0 through 7.6.4, FortiManager 7.4.0 through 7.4.7, FortiManager 7.2 all versions, FortiManager 7.0 all versions, FortiManager Cloud 7.6.0 through 7.6.4, FortiManager Cloud 7.4.0 through 7.4.7, FortiManager Cloud 7.2 all versions, FortiManager Cloud 7.0 all versions may allow a privileged attacker to delete files from the underlying filesystem v
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-04-14
Published