Fortinet FortiSOAR
cpe:2.3:a:fortinet:fortisoar:*:*:*:*:*:*:*
- >= 7.6.0, <= 7.6.3
- ~7.5
- ~7.4
- ~7.3
A path traversal vulnerability has been identified in Fortinet FortiSOAR PaaS and on-premise versions 7.3, 7.4, 7.5, and 7.6. This vulnerability allows authenticated remote attackers to exploit path traversal via File Content Extraction actions, potentially leading to unauthorized access to restricted directories.
Exploitation of this vulnerability could result in unauthorized information disclosure by allowing attackers to access files outside of the intended directory restrictions.
Users are advised to upgrade to FortiSOAR File Content Extraction Connector Version 1.3.1 or above.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.