FORTINET Security Advisory
Published Date: July 14, 2026
Advisory Summary
Fortinet has disclosed a significant vulnerability rated with a CVSSv3 score of 5.0 affecting multiple Fortinet products including FortiOS, FortiPAM, FortiProxy, and FortiSwitch Manager. This path traversal flaw (CWE-22) allows a privileged, authenticated attacker possessing physical access to the device to execute crafted CLI commands capable of deleting the device’s root file system. The potential for severe operational disruption and data loss is high, given the direct impact on the core file system.
- Affects Fortinet’s core infrastructure platforms widely deployed in enterprise and service provider networks.
- Requires physical device access and privileged credentials, limiting remote exploitation but raising insider threat concerns.
- Exploitation leads to complete root file system deletion, potentially rendering the device non-operational.
- Applies to FortiOS, FortiPAM, FortiProxy, and FortiSwitch Manager, necessitating cross-platform mitigation efforts.
- Immediately assess physical security protocols to prevent unauthorized access to devices.
- Apply any available patches or firmware updates issued by Fortinet as detailed in their advisory.
- Implement stringent access controls and monitoring on CLI usage.
- Consider device backups and incident response readiness to recover from potential filesystem damage.
This flaw underscores the ongoing need for robust physical security and vigilant privilege management in IT infrastructure environments, especially for critical network elements managed by Fortinet.
Reference: Vendor Advisory