A improper access control vulnerability in Fortinet FortiClientEMS 7.4.5 through 7.4.6 may allow an unauthenticated attacker to execute unauthorized code or commands via crafted requests.
Attack Parameters
Impact Assessment
CVSS Vector v3.1
Weakness Type (CWE)
Vulnerable Products 2
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Fortinet Forticlientems
cpe:2.3:a:fortinet:forticlientems:7.4.5:*:*:*:*:*:*:*
|
— | — |
|
Fortinet Forticlientems
cpe:2.3:a:fortinet:forticlientems:7.4.6:*:*:*:*:*:*:*
|
— | — |