Fortinet FortiWeb Path Traversal Vulnerability
Vendor: Fortinet
Product: FortiWeb
Added: 2025-11-14
Due Date: 2025-11-21
Description:
Fortinet FortiWeb contains a relative path traversal vulnerability that may allow an unauthenticated attacker to execute administrative commands on the system via crafted HTTP or HTTPS requests.
Required Action:
Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
CWEs: