Path traversal in FortiManager - CVE-2024-48884
Published: January 16, 2025
Vulnerability details
The vulnerability allows a remote user to escalate privileges on the system.
The vulnerability exists due to input validation error when processing directory traversal sequences within the csfd daemon. A remote authenticated user with access to the security fabric interface can send a specially crafted HTTP request and write arbitrary files to the system.
Affected software
FortiProxy
FortiVoice
FortiWeb
FortiOS
FortiRecorder
How to mitigate CVE-2024-48884
FortiProxy - addressed in versions 7.0.19, 7.2.12, 7.4.6
FortiVoice - addressed in versions 6.4.10, 7.0.5
FortiWeb - addressed in versions 7.4.5, 7.6.1
FortiOS - addressed in versions 7.0.16, 7.2.10, 7.4.5, 7.6.1
FortiRecorder - addressed in versions 7.0.5, 7.2.2
External References
Related Security Bulletins
- Multiple path traversal vulnerabilities in FortiManager
- Multiple path traversal vulnerabilities in FortiOS
- Multiple path traversal vulnerabilities in FortiProxy
- Multiple path traversal vulnerabilities in FortiRecorder
- Multiple path traversal vulnerabilities in FortiVoice
- Multiple path traversal vulnerabilities in FortiWeb