Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-42g6-7w4j-xv9r

Опубликовано: 07 сент. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Multiple relative path traversal vulnerabilities [CWE-23] in Fortinet FortiSOAR before 7.2.1 allows an authenticated attacker to write to the underlying filesystem with nginx permissions via crafted HTTP requests.

Multiple relative path traversal vulnerabilities [CWE-23] in Fortinet FortiSOAR before 7.2.1 allows an authenticated attacker to write to the underlying filesystem with nginx permissions via crafted HTTP requests.

EPSS

Процентиль: 73%
0.00746
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 6.3
nvd
больше 3 лет назад

Multiple relative path traversal vulnerabilities [CWE-23] in Fortinet FortiSOAR before 7.2.1 allows an authenticated attacker to write to the underlying filesystem with nginx permissions via crafted HTTP requests.

EPSS

Процентиль: 73%
0.00746
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-22