Lucene search

K
cveMitreCVE-2009-1262
HistoryApr 07, 2009 - 11:30 p.m.

CVE-2009-1262

2009-04-0723:30:00
CWE-134
mitre
web.nvd.nist.gov
25
fortinet
forticlient
format string
vulnerability
cve-2009-1262
nvd

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.5

Confidence

High

EPSS

0

Percentile

0.4%

Format string vulnerability in Fortinet FortiClient 3.0.614, and possibly earlier, allows local users to execute arbitrary code via format string specifiers in the VPN connection name.

Affected configurations

Nvd
Node
fortinetforticlientMatch3.0.614
VendorProductVersionCPE
fortinetforticlient3.0.614cpe:2.3:h:fortinet:forticlient:3.0.614:*:*:*:*:*:*:*

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.5

Confidence

High

EPSS

0

Percentile

0.4%

Related for CVE-2009-1262