PT-2026-32693 · Fortinet · Fortiweb

Published

2026-04-14

·

Updated

2026-04-19

·

CVE-2026-39814

CVSS v2.0

6.8

Medium

VectorAV:L/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions FortiWeb versions 8.0.0 through 8.0.2 FortiWeb versions 7.6.0 through 7.6.6 FortiWeb versions 7.4.1 through 7.4.12 FortiWeb versions 7.2.7 through 7.2.12 FortiWeb versions 7.0.10 through 7.0.12
Description A relative path traversal issue exists in the web application command line interface due to errors in the directory relative path processing mechanism. This may allow an attacker to execute unauthorized code or commands.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Relative Path Traversal

Weakness Enumeration

Related Identifiers

BDU:2026-05558
CVE-2026-39814

Affected Products

Fortiweb