CVE-2025-53609
EUVD-2025-2725909.09.2025, 14:15
A Relative Path Traversal vulnerability [CWE-23] in FortiWeb 7.6.0 through 7.6.4, 7.4.0 through 7.4.8, 7.2.0 through 7.2.11, 7.0.2 through 7.0.11 may allow an authenticated attacker to perform an arbitrary file read on the underlying system via crafted requests.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| fortinet | fortiweb | 7.0.2 ≤ 𝑥 < 7.2.12 |
| fortinet | fortiweb | 7.4.0 ≤ 𝑥 < 7.4.9 |
| fortinet | fortiweb | 7.6.0 ≤ 𝑥 < 7.6.5 |
𝑥
= Vulnerable software versions