Security Advisory

CVE-2021-42753

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-02-02 10:46:53
Last updated 2024-10-22 21:01:39
Assigner fortinet
CVSS score 8.1
State PUBLISHED

Description

An improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability [CWE-22] in FortiWeb management interface 6.4.1 and below, 6.3.15 and below, 6.2.x, 6.1.x, 6.0.x, 5.9.x and 5.8.x may allow an authenticated attacker to perform an arbitrary file and directory deletion in the device filesystem.