216.73.216.133

CVE-2025-60024

· Published 09/12/2025 18:15 · Modified 09/12/2025 20:25

Labels: CVE-2025-60024 2025-12-09CVE-2025-60024CWE-22[email protected]

Essential information

Published
09/12/2025 18:15
Modified
09/12/2025 20:25
Author
Creator
CVSS
8.8 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CVSS metrics

Description

Multiple Improper Limitations of a Pathname to a Restricted Directory ('Path Traversal') vulnerabilities [CWE-22] vulnerability in Fortinet FortiVoice 7.2.0 through 7.2.2, FortiVoice 7.0.0 through 7.0.7 may allow a privileged authenticated attacker to write arbitrary files via specifically HTTP or HTTPS commands

NVD status

Status
Analyzed — CVE has had analysis completed and all data associations made.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
fortinet / fortivoice cpe:2.3:a:fortinet:fortivoice:*:*:*:*:*:*:*:*
fortinet / fortivoice cpe:2.3:a:fortinet:fortivoice:*:*:*:*:*:*:*:*

References