← Back

CVE-2024-47574

nvd nist
Published: Nov 13, 2024Modified: Jan 21, 2025

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

A authentication bypass using an alternate path or channel in Fortinet FortiClientWindows version 7.4.0, versions 7.2.4 through 7.2.0, versions 7.0.12 through 7.0.0, and 6.4.10 through 6.4.0 allows low privilege attacker to execute arbitrary code with high privilege via spoofed named pipe messages.

Affected (3)

1 product
Forticlient
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Fortinet
From 6.4.0 to 7.0.13
From 7.2.0 to 7.2.5
Version 7.4.0

References (1)

Source: psirt@fortinet.com
Vendor Advisory

Timeline

No history available yet.