V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2018-13379
CVE
Critical KEVConfirmedExploit available

An Improper Limitation of a Pathname to a Restricted Directory ("Path Traversal") in Fortinet FortiOS 6.0.0 to 6.0.4, 5.6.3 to 5.6.7 and 5.…

CVSS
9.8
Critical
EPSS
1.00
p100
Published
2018-01-01
Updated
2021-11-03
Description

An Improper Limitation of a Pathname to a Restricted Directory ("Path Traversal") in Fortinet FortiOS 6.0.0 to 6.0.4, 5.6.3 to 5.6.7 and 5.4.6 to 5.4.12 and FortiProxy 2.0.0, 1.2.0 to 1.2.8, 1.1.0 to 1.1.6, 1.0.0 to 1.0.7 under SSL VPN web portal allows an unauthenticated attacker to download system files via special crafted HTTP resource requests.

Tags · CWE
KEVPre-auth
CWE-22
CAPEC-64
CAPEC-76
CAPEC-78
CAPEC-79
CAPEC-126
Affected products
FortiProxy < 1.2.9FortiProxyFortiOS 5.4.6–5.4.13FortiOS 5.6.3–5.6.8FortiOS 6.0.0–6.0.5
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Timeline
2018-01-01
Published
2021-11-03
Added to KEV
2021-11-03
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: H
High (H)
Integrity Impact
I: H
High (H)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
1.000 · p100
Known exploited (KEV)
Yes
Known exploits — Сканер-ВС
47287
exploitdb · https://www.exploit-db.com/exploits/47287
Enterprise
47288
exploitdb · https://www.exploit-db.com/exploits/47288
Enterprise
CVE-2018-13379
github-poc · https://github.com/Instructor-Admin/Multi-threaded-mass-exploiter-CVE-2018-13379-POC
Enterprise
Affected products
ProductVendorStatus
fortios*Exploited
fortiproxy*Exploited
Source databases
CVE
Related vulnerabilities