Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x7gj-6vhf-hvmm

Опубликовано: 03 мар. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Multiple relative path traversal vulnerabilities [CWE-23] in FortiWLM management interface 8.6.2 and below, 8.5.2 and below, 8.4.2 and below, 8.3.3 and below, 8.2.2 may allow an authenticated attacker to retrieve arbitrary files from the underlying filesystem via specially crafted web requests.

Multiple relative path traversal vulnerabilities [CWE-23] in FortiWLM management interface 8.6.2 and below, 8.5.2 and below, 8.4.2 and below, 8.3.3 and below, 8.2.2 may allow an authenticated attacker to retrieve arbitrary files from the underlying filesystem via specially crafted web requests.

EPSS

Процентиль: 59%
0.00387
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 5.4
nvd
почти 4 года назад

Multiple relative path traversal vulnerabilities [CWE-23] in FortiWLM management interface 8.6.2 and below, 8.5.2 and below, 8.4.2 and below, 8.3.3 and below, 8.2.2 may allow an authenticated attacker to retrieve arbitrary files from the underlying filesystem via specially crafted web requests.

EPSS

Процентиль: 59%
0.00387
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-22