Path traversal vulnerability in administrative interface

Summary

Multiple Improper Limitations of a Pathname to a Restricted Directory ('Path Traversal') vulnerabilities [CWE-22] in FortiVoice may allow a privileged authenticated attacker to write arbitrary files via specifically HTTP or HTTPS commands.

Version Affected Solution
FortiVoice 7.2 7.2.0 through 7.2.2 Upgrade to 7.2.3 or above
FortiVoice 7.0 7.0.0 through 7.0.7 Upgrade to 7.0.8 or above

Acknowledgement

Internally discovered and reported by Jaguar Perlas from Burnbaby Infosec team.

Timeline

2025-12-09: Initial publication