#VU81929 Path traversal in FortiSIEM - CVE-2023-40714


Vulnerability identifier: #VU81929

Vulnerability risk: Medium

CVSSv4.0: 6.3 [CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Green]

CVE-ID: CVE-2023-40714

CWE-ID: CWE-22

Exploitation vector: Network

Exploit availability: No

Vulnerable software:
FortiSIEM
Server applications / DLP, anti-spam, sniffers

Vendor: Fortinet, Inc

Description

The vulnerability allows a remote user to escalate privileges on the system.

The vulnerability exists due to input validation error when processing directory traversal sequences in FortiSIEM file upload components. A remote authenticated user can send specially crafted HTTP requests to FortiSIEM GUI and overwrite arbitrary files on the system, leading to privilege escalation.

Mitigation
Install update from vendor's website.

Vulnerable software versions

FortiSIEM: 6.4.0 - 7.0.0


External links
https://fortiguard.fortinet.com/psirt/FG-IR-23-085


Q & A

Can this vulnerability be exploited remotely?

Yes. This vulnerability can be exploited by a remote authenticated user via the Internet.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.


Latest bulletins with this vulnerability