CVE-2023-34990: Fortinet Fortiwlm
Critical severity, CVSS 9.8. EPSS: 24.8% chance of exploitation in the next 30 days.
A relative path traversal in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5.0 through 8.5.4 allows attacker to execute unauthorized code or commands via specially crafted web requests.
Affected products
- Fortinet Fortiwlm: from 8.5.0, before 8.5.5 (fixed in 8.5.5); from 8.6.0, before 8.6.6 (fixed in 8.6.6)
Published 2024-12-18. Last modified 2026-06-17.