Beveiligingsadvies

CVE-2024-36508

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-02-11 16:09:07
Laatst bijgewerkt 2025-02-12 15:53:19
Toegewezen door fortinet
CVSS-score 5.9
Status PUBLISHED

Beschrijving

An improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability [CWE-22] in Fortinet FortiManager version 7.4.0 through 7.4.2 and before 7.2.5 and Fortinet FortiAnalyzer version 7.4.0 through 7.4.2 and before 7.2.5 CLI allows an authenticated admin user with diagnose privileges to delete files on the system.