Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
fortinet forticlient vulnerabilities and exploits
(subscribe to this query)
6.8
CVSSv2
CVE-2019-16152
A Denial of service (DoS) vulnerability in FortiClient for Linux 6.2.1 and below may allow an user with low privilege to cause FortiClient processes running under root privilege crashes via sending specially crafted IPC client requests to the fctsched process due the nanomsg not ...
Fortinet Forticlient
6.8
CVSSv2
CVE-2019-17652
A stack buffer overflow vulnerability in FortiClient for Linux 6.2.1 and below may allow a user with low privilege to cause FortiClient processes running under root priviledge crashes via sending specially crafted "StartAvCustomScan" type IPC client requests to the fcts...
Fortinet Forticlient
6.6
CVSSv2
CVE-2019-16155
A privilege escalation vulnerability in FortiClient for Linux 6.2.1 and below may allow a user with low privilege to overwrite system files as root with arbitrary content through system backup file via specially crafted "BackupConfig" type IPC client requests to the fct...
Fortinet Forticlient
6.4
CVSSv2
CVE-2021-41030
An authentication bypass by capture-replay vulnerability [CWE-294] in FortiClient EMS versions 7.0.1 and below and 6.4.4 and below may allow an unauthenticated malicious user to impersonate an existing user by intercepting and re-using valid SAML authentication messages.
Fortinet Forticlient Enterprise Management Server
Fortinet Forticlient Enterprise Management Server 7.0.0
Fortinet Forticlient Enterprise Management Server 7.0.1
5.5
CVSSv2
CVE-2020-15941
A path traversal vulnerability [CWE-22] in FortiClientEMS versions 6.4.1 and below; 6.2.8 and below may allow an authenticated malicious user to inject directory traversal character sequences to add/delete the files of the server via the name parameter of Deployment Packages.
Fortinet Forticlient Endpoint Management Server
5.4
CVSSv2
CVE-2021-41028
A combination of a use of hard-coded cryptographic key vulnerability [CWE-321] in FortiClientEMS 7.0.1 and below, 6.4.6 and below and an improper certificate validation vulnerability [CWE-297] in FortiClientWindows, FortiClientLinux and FortiClientMac 7.0.1 and below, 6.4.6 and b...
Fortinet Forticlient
Fortinet Forticlient 7.0.0
Fortinet Forticlient 7.0.1
Fortinet Forticlient Endpoint Management Server
Fortinet Forticlient Endpoint Management Server 7.0.0
Fortinet Forticlient Endpoint Management Server 7.0.1
5.4
CVSSv2
CVE-2013-4669
FortiClient prior to 4.3.5.472 on Windows, prior to 4.0.3.134 on Mac OS X, and prior to 4.0 on Android; FortiClient Lite prior to 4.3.4.461 on Windows; FortiClient Lite 2.0 up to and including 2.0.0223 on Android; and FortiClient SSL VPN prior to 4.0.2258 on Linux proceed with an...
Fortinet Forticlient
Fortinet Forticlient Lite
Fortinet Forticlient Ssl Vpn
5
CVSSv2
CVE-2021-44167
An incorrect permission assignment for critical resource vulnerability [CWE-732] in FortiClient for Linux version 6.0.8 and below, 6.2.9 and below, 6.4.7 and below, 7.0.2 and below may allow an unauthenticated malicious user to access sensitive information in log files and direct...
Fortinet Forticlient
5
CVSSv2
CVE-2021-43205
An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiClient for Linux version 7.0.2 and below, 6.4.7 and below and 6.2.9 and below may allow an unauthenticated malicious user to access the confighandler webserver via external binaries.
Fortinet Forticlient
Fortinet Forticlient 6.4.7
5
CVSSv2
CVE-2021-36167
An improper authorization vulnerabiltiy [CWE-285] in FortiClient Windows versions 7.0.0 and 6.4.6 and below and 6.2.8 and below may allow an unauthenticated malicious user to bypass the webfilter control via modifying the session-id paramater.
Fortinet Forticlient 7.0.0
Fortinet Forticlient
Fortinet Forticlient 6.2.7
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-5324
path traversal
CVE-2024-4743
CVE-2024-5184
TCP
CVE-2024-27822
code injection
CVE-2024-28995
CVE-2023-20938
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »