A Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in Fortinet FortiPortal 6.x before 6.0.5, FortiPortal 5.3.x before 5.3.6 and any FortiPortal before 6.2.5 allows authenticated attacker to disclosure information via crafted GET request with malicious parameter values.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://fortiguard.com/advisory/FG-IR-21-085 |
|
History
Fri, 25 Oct 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: fortinet
Published: 2021-08-04T15:01:20
Updated: 2024-10-25T13:53:28.082Z
Reserved: 2021-07-06T00:00:00
Link: CVE-2021-36168
Updated: 2024-08-04T00:47:43.852Z
Status : Modified
Published: 2021-08-04T15:15:09.117
Modified: 2024-11-21T06:13:14.660
Link: CVE-2021-36168
No data.