CVE-2024-55597
CVE-2024-55597 is a path traversal vulnerability in Fortinet FortiWeb that allows attackers to execute unauthorized code. This Fortinet vulnerability affects FortiWeb versions 7.0.0 through 7.6.0, stemming from improper limitation of pathnames. Attackers can exploit this flaw using crafted requests to bypass security restrictions. Although the CVSS score is 0, indicating a base severity is not applicable, SOCRadar's Vulnerability Risk Score (SVRS) of 30 suggests some level of risk. Successful exploitation could lead to unauthorized code execution and potentially compromise the entire FortiWeb system. This vulnerability is significant because it allows an attacker to move outside of the intended restricted directory, leading to severe security consequences. Organizations using affected FortiWeb versions should apply patches and mitigation steps as soon as they are available.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.