FG-IR-22-109: Relative path traversal vulnerability in CLI
Published Jun 7, 2022
·Updated
A path traversal vulnerability [CWE-22] in FortiAP-U CLI may allow an admin user to delete and access unauthorized files and data via specifically crafted CLI commands.
Affected Software
1 affected component
Fortinet FortiAP-U
Event History
Jun 7, 2022
Advisory Published
via FortiGuard·12:00 AM
Data Sourced
via FortiGuard·12:00 AM
DescriptionSeverityWeaknessAffected Software
Oct 25, 2024
Advisory Published
via FortiGuard·12:00 AM
Frequently Asked Questions
1
What is the severity of FG-IR-22-109?
The FG-IR-22-109 vulnerability has a high severity level due to its potential to allow unauthorized file access and deletion.
2
How do I fix FG-IR-22-109?
To fix the FG-IR-22-109 vulnerability, update the FortiAP-U software to the latest version provided by Fortinet.
3
Who is affected by FG-IR-22-109?
FG-IR-22-109 affects administrators using Fortinet FortiAP-U who utilize the CLI for managing the system.
4
What type of vulnerability is FG-IR-22-109?
FG-IR-22-109 is classified as a path traversal vulnerability, allowing access to unauthorized files.
5
What can happen if FG-IR-22-109 is exploited?
If FG-IR-22-109 is exploited, an attacker could delete or access sensitive files and data on the affected system.