CVE-2025-68649

MEDIUM

Fortinet FortiManager and FortiAnalyzer <= 7.6.4, <= 7.4.7, 7.2 all, 7.0 all - Path Traversal via CLI Requests

Title source: llm
STIX 2.1

Description

An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.4, FortiAnalyzer 7.4.0 through 7.4.7, FortiAnalyzer 7.2 all versions, FortiAnalyzer 7.0 all versions, FortiAnalyzer Cloud 7.6.0 through 7.6.4, FortiAnalyzer Cloud 7.4.0 through 7.4.7, FortiAnalyzer Cloud 7.2 all versions, FortiAnalyzer Cloud 7.0 all versions, FortiManager 7.6.0 through 7.6.4, FortiManager 7.4.0 through 7.4.7, FortiManager 7.2 all versions, FortiManager 7.0 all versions, FortiManager Cloud 7.6.0 through 7.6.4, FortiManager Cloud 7.4.0 through 7.4.7, FortiManager Cloud 7.2 all versions, FortiManager Cloud 7.0 all versions may allow a privileged attacker to delete files from the underlying filesystem via crafted CLI requests.

References (1)

Core 1

Scores

CVSS v3 6.0
EPSS 0.0014
EPSS Percentile 34.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-22
Status published
Products (20)
Fortinet/FortiAnalyzer 7.0.0 - 7.0.16
fortinet/fortianalyzer 7.0.0 - 7.4.8
Fortinet/FortiAnalyzer 7.2.0 - 7.2.12
Fortinet/FortiAnalyzer 7.4.0 - 7.4.7
Fortinet/FortiAnalyzer 7.6.0 - 7.6.4
Fortinet/FortiAnalyzer Cloud 7.0.1 - 7.0.16
Fortinet/FortiAnalyzer Cloud 7.2.1 - 7.2.12
Fortinet/FortiAnalyzer Cloud 7.4.1 - 7.4.7
Fortinet/FortiAnalyzer Cloud 7.6.2
fortinet/fortianalyzer_cloud 7.0.0 - 7.4.8
... and 10 more
Published Apr 14, 2026
Tracked Since Apr 14, 2026