PT-2026-32693 · Fortinet · Fortiweb

CVE-2026-39814

·

Published

2026-04-14

·

Updated

2026-04-19

CVSS v2.0

6.8

Medium

VectorAV:L/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions FortiWeb versions 8.0.0 through 8.0.2 FortiWeb versions 7.6.0 through 7.6.6 FortiWeb versions 7.4.1 through 7.4.12 FortiWeb versions 7.2.7 through 7.2.12 FortiWeb versions 7.0.10 through 7.0.12
Description A relative path traversal issue exists in the web application command line interface due to errors in the directory relative path processing mechanism. This may allow an attacker to execute unauthorized code or commands.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Relative Path Traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-05558
CVE-2026-39814

Affected Products

Fortiweb