Tracker / CVE-2018-13379
CVE-2018-13379
Ransomware Critica 9.1
An Improper Limitation of a Pathname to a Restricted Directory ("Path Traversal") in Fortinet FortiOS 6.0.0 to 6.0.4, 5.6.3 to 5.6.7 and 5.4.6 to 5.4.12 and FortiProxy 2.0.0, 1.2.0 to 1.2.8, 1.1.0 to 1.1.6, 1.0.0 to 1.0.7 under SSL VPN web portal allows an unauthenticated attacker to download system files via special crafted HTTP resource requests.
Prodotti e versioni affette
| fortinet | fortios · 5.4.6 → 5.4.13 |
|---|---|
| fortinet | fortios · 5.6.3 → 5.6.8 |
| fortinet | fortios · 6.0.0 → 6.0.5 |
| fortinet | fortiproxy |
| fortinet | fortiproxy · … → 1.2.9 |
Analisi
Questa pagina non è ancora indicizzabile.Finché non contiene un’analisi originale — cosa espone davvero, come verificare in due minuti se un sistema è stato toccato, cosa fare se lo è stato — la pagina resta noindex. È il database a deciderlo, non il modello di pagina.