CVE-2022-42476
Summary
| CVE | CVE-2022-42476 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-03-07 17:15:00 UTC |
| Updated | 2023-11-07 03:53:00 UTC |
| Description | A relative path traversal vulnerability [CWE-23] in Fortinet FortiOS version 7.2.0 through 7.2.2, 7.0.0 through 7.0.8 and before 6.4.11, FortiProxy version 7.2.0 through 7.2.2 and 7.0.0 through 7.0.8 allows privileged VDOM administrators to escalate their privileges to super admin of the box via crafted CLI requests. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 43994 FortiOS Path Traversal Vulnerability (FG-IR-22-401)
- 44058 FortiOS Path Traversal Vulnerability (FG-IR-22-401) (Unauthenticated Check)