---
cve: "CVE-2018-13379"
severity: "CRITICAL"
cvss: 9.1
epss: "100%"
vendor: "Fortinet"
kev: true
exploited: true
published: "2019-06-04 21:29:00"
tags: [cve, security, critical]
source: tsecurity.de CVE-Dossier
exported: "2026-09-08T09:37:51+02:00"
---

# CVE-2018-13379

> 9.1 CRITICAL · ⚠️ CISA KEV (1770 Tage) · 🔓 Exploited

## Beschreibung

An Improper Limitation of a Pathname to a Restricted Directory ("Path Traversal") in Fortinet FortiOS 6.0.0 to 6.0.4, 5.6.3 to 5.6.7 and 5.4.6 to 5.4.12 and FortiProxy 2.0.0, 1.2.0 to 1.2.8, 1.1.0 to 1.1.6, 1.0.0 to 1.0.7 under SSL VPN web portal allows an unauthenticated attacker to download system files via special crafted HTTP resource requests.

## CVSS-Vektor

```
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Netzwerk | bad |
| AC Komplexität | Gering | bad |
| PR Privilegien | Keine | bad |
| UI Interaktion | Keine | bad |
| S Scope | Unverändert | good |
| C Vertraulichkeit | Hoch | bad |
| I Integrität | Keine | good |
| A Verfügbarkeit | Hoch | bad |

## Exploit-Evidenz

- [EDB-47288 — Fortinet FortiOS 5.6.3 - 5.6.7 / FortiOS 6.0.0 - 6.0.4 - Credentials Disclosure](https://www.exploit-db.com/exploits/47288)
- [EDB-47287 — Fortinet FortiOS 5.6.3 - 5.6.7 / FortiOS 6.0.0 - 6.0.4 - Credentials Disclosure (Metasploit)](https://www.exploit-db.com/exploits/47287)

## Referenzen

- <https://fortiguard.com/advisory/FG-IR-18-384>
- <https://www.fortiguard.com/psirt/FG-IR-20-233>
- <https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2018-13379>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2018-13379) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
