← Volver al buscador de CVEs

CVE-2026-22573

FortiSOAR

Descripción

An improper limitation of a pathname to a restricted directory (-path traversal-) vulnerability in Fortinet FortiSOAR PaaS 7.6.0 through 7.6.3, FortiSOAR PaaS 7.5 all versions, FortiSOAR PaaS 7.4 all versions, FortiSOAR PaaS 7.3 all versions, FortiSOAR on-premise 7.6.0 through 7.6.3, FortiSOAR on-premise 7.5 all versions, FortiSOAR on-premise 7.4 all versions, FortiSOAR on-premise 7.3 all versions may allow an authenticated remote attacker to perform path traversal attack via File Content Extraction actions.

CVSS 6.5EPSS 0.416%Riesgo 0.67
Ver fuente
Publicación
2026-04-14 16:16:36
Versiones afectadas
<=7.6.3, ==7.5, ==7.4, ==7.3
Tipo
Core software
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N