Threat Pulse Cyber threat intelligence · Manera Fintech
← back to catalog

CVE-2018-13379

Fortinet / FortiOS

Ransomware campaign Added 2021-11-03 Due 2022-05-03

Fortinet FortiOS SSL VPN Path Traversal Vulnerability

Fortinet FortiOS SSL VPN web portal contains a path traversal vulnerability that may allow an unauthenticated attacker to download FortiOS system files through specially crafted HTTP resource requests.

Required action

Apply updates per vendor instructions.

Notes: https://nvd.nist.gov/vuln/detail/CVE-2018-13379

Metadata

Added to KEV2021-11-03
Remediation due2022-05-03
Ransomware useKnown
CWEsCWE-22
Ingested2026-04-24 15:03:13

Cross-mesh regulatory overlay LexiWorld · RegulatoryRadar

If you're breached via this CVE, what disclosure laws and cyber regs fire? Asks LexiWorld and RegulatoryRadar via signed mesh.