CVE-2021-36168

Publication date

2021-08-04 15:01:20

Family

fortinet

State

PUBLISHED

Description

A Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) in Fortinet FortiPortal 6.x before 6.0.5, FortiPortal 5.3.x before 5.3.6 and any FortiPortal before 6.2.5 allows authenticated attacker to disclosure information via crafted GET request with malicious parameter values.