CVE-2016-5092

Directory traversal vulnerability in Fortinet FortiWeb before 5.5.3 allows remote authenticated administrators with read and write privileges to read arbitrary files by leveraging the autolearn feature.
Configurations

Configuration 1 (hide)

cpe:2.3:a:fortinet:fortiweb:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:53

Type Values Removed Values Added
References () http://fortiguard.com/advisory/fortiweb-path-traversal-vulnerability - Vendor Advisory () http://fortiguard.com/advisory/fortiweb-path-traversal-vulnerability - Vendor Advisory

Information

Published : 2016-07-13 15:59

Updated : 2024-11-21 02:53


NVD link : CVE-2016-5092

Mitre link : CVE-2016-5092

CVE.ORG link : CVE-2016-5092


JSON object : View

Products Affected

fortinet

  • fortiweb
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')