CVE-2018-13379: [FortiProxy] file leaking through SSL VPN language resource request
A path traversal vulnerability in the FortiProxy SSL VPN web portal may allow a non-authenticated, remote attacker to download FortiProxy system files through specially crafted HTTP resource requests.
Other sources
An Improper Limitation of a Pathname to a Restricted Directory ("Path Traversal") in Fortinet FortiOS 6.0.0 to 6.0.4, 5.6.3 to 5.6.7 and 5.4.6 to 5.4.12 and FortiProxy 2.0.0, 1.2.0 to 1.2.8, 1.1.0 to 1.1.6, 1.0.0 to 1.0.7 under SSL VPN web portal allows an unauthenticated attacker to download system files via special crafted HTTP resource requests.
Fortinet FortiOS SSL VPN web portal contains a path traversal vulnerability that may allow an unauthenticated attacker to download FortiOS system files through specially crafted HTTP resource requests.
— CISA
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2018-13379?
CVE-2018-13379 has a high severity rating due to its potential to allow remote attackers to access sensitive system files.
How do I fix CVE-2018-13379?
To fix CVE-2018-13379, update FortiOS or FortiProxy to the latest version provided by Fortinet.
Which versions are affected by CVE-2018-13379?
CVE-2018-13379 affects FortiOS versions from 5.4.6 to 5.6.8 and FortiProxy versions prior to 1.2.9.
Can CVE-2018-13379 be exploited remotely?
Yes, CVE-2018-13379 can be exploited remotely by non-authenticated attackers.
What type of vulnerability is CVE-2018-13379?
CVE-2018-13379 is classified as a path traversal vulnerability.