Vulnerability Database

289,784

Total vulnerabilities in the database

CVE-2024-35274

An improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability [CWE-22] in Fortinet FortiAnalyzer versions below 7.4.2, Fortinet FortiManager versions below 7.4.2 and Fortinet FortiAnalyzer-BigData version 7.4.0 and below 7.2.7 allows a privileged attacker with read write administrative privileges to create non-arbitrary files on a chosen directory via crafted CLI requests.

  • Published: Nov 12, 2024
  • Updated: May 4, 2025
  • CVE: CVE-2024-35274
  • Severity: Low
  • Exploit:

CVSS v3:

  • Severity: Low
  • Score: 2.3
  • AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N