A improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiSandbox version 4.4.0 and 4.2.0 through 4.2.5 and 4.0.0 through 4.0.3 and 3.2.0 through 3.2.4 and 2.5.0 through 2.5.2 and 2.4.1 and 2.4.0 allows attacker to denial of service via crafted http requests.
References
Link | Resource |
---|---|
https://fortiguard.com/psirt/FG-IR-23-280 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: fortinet
Published: 2023-10-13T14:51:03.342Z
Updated: 2023-10-13T14:51:03.342Z
Reserved: 2023-08-30T13:42:39.547Z
Link: CVE-2023-41682
JSON object: View
NVD Information
Status : Modified
Published: 2023-10-13T15:15:44.123
Modified: 2023-11-07T04:21:04.987
Link: CVE-2023-41682
JSON object: View
Redhat Information
No data.
CWE