CVE-2024-46664

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Jan 14, 2025
CWE ID 23

Summary

CVE-2024-46664 is a newly disclosed vulnerability affecting Fortinet FortiRecorder. This issue, classified as a relative path traversal vulnerability [CWE-23], allows privileged attackers to access files on the underlying filesystem. Maliciously crafted HTTP or HTTPs requests can be used to exploit this vulnerability in FortiRecorder versions 7.2.0 through 7.2.1 and before 7.0.4. Successful exploitation could result in the disclosure of sensitive information or system compromise. Fortinet urges users to apply the available patch as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share