A relative path traversal in Fortinet FortiWeb version 7.0.0 through 7.0.2, FortiWeb version 6.3.6 through 6.3.20, FortiWeb 6.4 all versions allows attacker to information disclosure via specially crafted web requests.
References
Link | Resource |
---|---|
https://fortiguard.com/psirt/FG-IR-22-251 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2023-02-16 11:15
Updated : 2023-02-28 11:50
NVD link : CVE-2023-23784
Mitre link : CVE-2023-23784
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
fortinet
- fortiweb