High severity7.8NVD Advisory· Published Jul 19, 2022· Updated Jun 17, 2026
CVE-2022-30301
CVE-2022-30301
Description
A path traversal vulnerability [CWE-22] in FortiAP-U CLI 6.2.0 through 6.2.3, 6.0.0 through 6.0.4, 5.4.0 through 5.4.6 may allow an admin user to delete and access unauthorized files and data via specifically crafted CLI commands.
Affected products
8cpe:2.3:a:fortinet:fortiap-u:*:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:fortinet:fortiap-u:*:*:*:*:*:*:*:*range: >=6.0.0,<=6.0.4
- cpe:2.3:a:fortinet:fortiap-u:5.4.0:*:*:*:*:*:*:*
- cpe:2.3:a:fortinet:fortiap-u:5.4.3:*:*:*:*:*:*:*
- cpe:2.3:a:fortinet:fortiap-u:5.4.4:*:*:*:*:*:*:*
- cpe:2.3:a:fortinet:fortiap-u:5.4.5:*:*:*:*:*:*:*
- cpe:2.3:a:fortinet:fortiap-u:5.4.6:*:*:*:*:*:*:*
- Range: 6.2.0-6.2.3, 6.0.0-6.0.4, 5.4.0-5.4.6
Patches
Vulnerability mechanics
References
1- fortiguard.com/psirt/FG-IR-22-109nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.