← Back

CVE-2025-24473

nvd nist
Published: May 28, 2025Modified: Jun 17, 2026

JSON object

Loading...
3.7
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
Exploitability: 2.2 / Impact: 1.4
Source: NVD

Description

A exposure of sensitive system information to an unauthorized control sphere vulnerability in Fortinet FortiClientWindows 7.2.0 through 7.2.1, FortiClientWindows 7.0.13 through 7.0.14 may allow an unauthorized remote attacker to view application information via navigation to a hosted webpage, if Windows is configured to accept incoming connections to port 8053 (non-default setup)

Affected (1)

1 product
Forticlient
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 7.2.0 to 7.2.2

References (1)

Source: psirt@fortinet.com
Vendor Advisory

Timeline

No history available yet.