Off-by-slash vulnerability in Nginx config

Summary

An Improper Resolution of Path Equivalence vulnerability [CWE-41] in FortiPortal may allow a remote unauthenticated attacker to retrieve source code via crafted HTTP requests.

Version Affected Solution
FortiPortal 7.4 7.4.0 through 7.4.2 Upgrade to 7.4.3 or above
FortiPortal 7.2 7.2.0 through 7.2.6 Upgrade to 7.2.7 or above
FortiPortal 7.0 7.0.0 through 7.0.11 Upgrade to 7.0.12 or above

Acknowledgement

Fortinet is pleased to thank Oliver Leo for reporting this vulnerability under responsible disclosure.

Timeline

2025-02-11: Initial publication