
CVE-2018-13379 fortiOS Sicherheitslücke POC
Proof-of-Concept-Skript für CVE-2018-13379, eine kritische Path-Traversal-Schwachstelle im Fortinet FortiGate SSL VPN Webportal. Diese Schwachstelle ermöglicht es nicht authentifizierten Angreifern, über speziell präparierte HTTP-Ressourcenanfragen Systemdateien herunterzuladen, was potenziell Sitzungsdateien mit sensiblen Informationen offenlegt.
/remote/fgt_lang
## Target Format
Targets can be specified in the following formats:
- IP only: `192.168.1.1`
- IP with port: `192.168.1.1:10443`
- Domain: `vpn.example.com`
- Domain with port: `vpn.example.com:8443`