CVE-2022-42476EPSS p11.1%
CVE-2022-42476CVE-2022-42476
fortinet / fortiproxy
Description
A relative path traversal vulnerability [CWE-23] in Fortinet FortiOS version 7.2.0 through 7.2.2, 7.0.0 through 7.0.8 and before 6.4.11, FortiProxy version 7.2.0 through 7.2.2 and 7.0.0 through 7.0.8 allows privileged VDOM administrators to escalate their privileges to super admin of the box via crafted CLI requests.
Scoring
| CVSS | 8.2 () |
| Vector | CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H |
| EPSS | 0.22% probability of exploitation · percentile 11.1% · 2026-10-06T12:00:23Z |
| Last modified | 2026-06-17 |