CVE-2023-25606: Path traversal in history downloadzip
An improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability [CWE-23] in FortiAnalyzer and FortiManager management interface 7.2.0 through 7.2.1, 7.0.0 through 7.0.5, 6.4 all versions may allow a remote and authenticated attacker to retrieve arbitrary files from the underlying filesystem via specially crafted web requests.
Other sources
An improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability [CWE-23] in FortiAnalyzer and FortiManager management interface may allow a remote and authenticated attacker to retrieve arbitrary files from the underlying filesystem via specially crafted web requests.
— FortiGuard
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
CVE-2023-25606
What is the title of this vulnerability?
An improper limitation of a pathname to a restricted directory (Path Traversal) vulnerability
What is the severity of CVE-2023-25606?
The severity of CVE-2023-25606 is medium with a CVSS score of 6.5.
Which software versions are affected by CVE-2023-25606?
FortiAnalyzer versions 6.4.0 to 6.4.12, 7.0.0 to 7.0.5, and 7.2.0 to 7.2.2, as well as FortiManager versions 6.4.0 to 6.4.12, 7.0.0 to 7.0.5, and 7.2.0 to 7.2.2 are affected by CVE-2023-25606.
How can an attacker exploit CVE-2023-25606?
A remote and authenticated attacker can exploit CVE-2023-25606 to retrieve arbitrary files from the vulnerable system.
Is there a reference for more information about CVE-2023-25606?
Yes, you can find more information about CVE-2023-25606 at the following link: [FortiGuard Advisory FG-IR-22-471](https://fortiguard.com/psirt/FG-IR-22-471).