← Back to CVE List

CVE-2018-13379

Published: 2019-06-04T21:29Z
Last Modified: 2025-01-27T21:30Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An Improper Limitation of a Pathname to a Restricted Directory ("Path Traversal") in Fortinet FortiOS 6.0.0 to 6.0.4, 5.6.3 to 5.6.7 and 5.4.6 to 5.4.12 and FortiProxy 2.0.0, 1.2.0 to 1.2.8, 1.1.0 to 1.1.6, 1.0.0 to 1.0.7 under SSL VPN web portal allows an unauthenticated attacker to download system files via special crafted HTTP resource requests. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt