Lucene search

K
fortinetFortiGuard LabsFG-IR-22-146
HistoryFeb 16, 2023 - 12:00 a.m.

FortiWeb - Relative path traversal in web API

2023-02-1600:00:00
FortiGuard Labs
www.fortiguard.com
24
fortiweb
api
cwe-23
path traversal
vulnerability
unauthenticated attacker
file system

EPSS

0.001

Percentile

27.4%

A path traversal vulnerability [CWE-23] in the API of FortiWeb may allow a unauthenticated attacker to retrieve specific parts of files from the underlying file system via specially crafted web requests.

EPSS

0.001

Percentile

27.4%

Related for FG-IR-22-146