CVE-2021-42754
5.0
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:N
Exploitability: 1.3 / Impact: 3.6
Source: NVD
Description
An improper control of generation of code vulnerability [CWE-94] in FortiClientMacOS versions 7.0.0 and below and 6.4.5 and below may allow an authenticated attacker to hijack the MacOS camera without the user permission via the malicious dylib file.
Affected (2)
Products: Fortinet: Forticlient
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 6.4.0 to 6.4.5 |
References (2)
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.