CVE-2021-41026

A relative path traversal in FortiWeb versions 6.4.1, 6.4.0, and 6.3.0 through 6.3.15 may allow an authenticated attacker to retrieve arbitrary files from the underlying filesystem via specially crafted web requests.
References
Link Resource
https://fortiguard.com/advisory/FG-IR-21-156 Vendor Advisory
Configurations

Configuration 1

cpe:2.3:a:fortinet:fortiweb:*:*:*:*:*:*:*:*
cpe:2.3:a:fortinet:fortiweb:*:*:*:*:*:*:*:*

Information

Published : 2022-04-06 04:15

Updated : 2022-04-13 06:06


NVD link : CVE-2021-41026

Mitre link : CVE-2021-41026

Products Affected
No products.
CWE