> IT-Sentinel.com

// Cybersecurity & IT News Aggregator - Real-time Threat Intelligence Feed

NEWS CVE
← messages.back_to_articles

> Path Traversal in agent leads to Privilege Escalation

[SOURCE] Fortinet FortiGuard [DATE: 14/10/2025 07:00] [LANGUAGE: EN]
An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability [CWE-22] in FortiDLP Agent's Outlookproxy plugin for Windows and MacOS may allow an authenticated attacker to escalate their privileges to LocalService or Root privilege via sending a crafted request to a local listening port. Revised on 2025-10-14 00:00:00
[messages.read_original_source] →