Lucene search

K
fortinetFortiGuard LabsFG-IR-21-238
HistoryApr 05, 2022 - 12:00 a.m.

FortiClient (Windows) - privilege escalation in online installer due to incorrect working directory

2022-04-0500:00:00
FortiGuard Labs
www.fortiguard.com
60
forticlient
windows
privilege escalation
online installer
cwe-665
vulnerability
administrative privileges

EPSS

0

Percentile

12.6%

An improper initialization [CWE-665] vulnerability in FortiClient (Windows) may allow a local attacker to gain administrative privileges via placing a malicious executable inside the FortiClient installer’s directory.

EPSS

0

Percentile

12.6%

Related for FG-IR-21-238