CVE-2016-5092: Fortinet FortiWeb

Medium severity, CVSS 4.9. EPSS: 1.6% chance of exploitation in the next 30 days.

Directory traversal vulnerability in Fortinet FortiWeb before 5.5.3 allows remote authenticated administrators with read and write privileges to read arbitrary files by leveraging the autolearn feature.

Affected products

  • Fortinet FortiWeb: up to and including 5.5.2

Published 2016-07-13. Last modified 2026-06-17.