CVE-2022-42476EPSS p12.0%
CVE-2022-42476CVE-2022-42476
fortinet / fortiproxy
Description
A relative path traversal vulnerability [CWE-23] in Fortinet FortiOS version 7.2.0 through 7.2.2, 7.0.0 through 7.0.8 and before 6.4.11, FortiProxy version 7.2.0 through 7.2.2 and 7.0.0 through 7.0.8 allows privileged VDOM administrators to escalate their privileges to super admin of the box via crafted CLI requests.
Scoring
| CVSS | 8.2 () |
| Vector | CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H |
| EPSS | 0.22% probability of exploitation · percentile 12.0% · 2026-06-19T12:03:05Z |
| Last modified | 2026-06-17 |