Boletines de Vulnerabilidades

CVE-2025-60024

   
Software afectado FORTINET
 
Multiple Improper Limitations of a Pathname to a Restricted Directory ('Path Traversal') vulnerabilities [CWE-22] vulnerability in Fortinet FortiVoice 7.2.0 through 7.2.2, FortiVoice 7.0.0 through 7.0.7 may allow a privileged authenticated attacker to write arbitrary files via specifically HTTP or HTTPS commands

Link:

https://nvd.nist.gov/vuln/detail/CVE-2025-60024