CVE-2020-9290
published 2020-03-15CVE-2020-9290: An Unsafe Search Path vulnerability in FortiClient for Windows online installer 6.2.3 and below may allow a local attacker with control over the directory in…
PriorityP433high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
0.60%
44.8th percentile
An Unsafe Search Path vulnerability in FortiClient for Windows online installer 6.2.3 and below may allow a local attacker with control over the directory in which FortiClientOnlineInstaller.exe and FortiClientVPNOnlineInstaller.exe resides to execute arbitrary code on the system via uploading malicious Filter Library DLL files in that directory.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fortinet | forticlient | <= 6.2.3 | — |
| fortinet | forticlient | — | — |
| fortinet | forticlient_virtual_private_network | <= 6.2.3 | — |
| fortinet | forticlientemergencymanagementserver | — | — |
| fortinet | forticlientemsonlineinstaller | — | — |
| fortinet | forticlientonlineinstaller | — | — |
| fortinet | forticlientvirtualprivatenetwork | — | — |
| fortinet | forticlientvpnonlineinstaller | — | — |
| fortinet | fortinet_forticlient_for_windows | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.9MEDIUMAV:L/AC:M/Au:N/C:C/I:C/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-9wx5-hqr2-rqpp: An Unsafe Search Path vulnerability in FortiClient for Windows online installer 6
ghsa_unreviewed·2022-05-24
CVE-2020-9290 [MEDIUM] GHSA-9wx5-hqr2-rqpp: An Unsafe Search Path vulnerability in FortiClient for Windows online installer 6
An Unsafe Search Path vulnerability in FortiClient for Windows online installer 6.2.3 and below may allow a local attacker with control over the directory in which FortiClientOnlineInstaller.exe and FortiClientVPNOnlineInstaller.exe resides to execute arbitrary code on the system via uploading malicious Filter Library DLL files in that directory.
Fortinet
An Unsafe Search Path vulnerability in FortiClient Online Installer (Windows version before 6.0.6) may allow an unauthen...
vendor_fortinet·2019-05-28·CVSS 7.8
CVE-2019-5589 [HIGH] CWE-426 An Unsafe Search Path vulnerability in FortiClient Online Installer (Windows version before 6.0.6) may allow an unauthen...
FG-IR-19-060: An Unsafe Search Path vulnerability in FortiClient Online Installer (Windows version before 6.0.6) may allow an unauthen...
An Unsafe Search Path vulnerability in FortiClient Online Installer (Windows version before 6.0.6) may allow an unauthenticated, remote attacker with control over the directory in which FortiClientOnlineInstaller.exe resides to execute arbitrary code on the system via uploading malicious .dll files in that directory.
An Unsafe Search Path vulnerability in FortiClient EMS online installer 6.2.1 and below may allow a local attacker with control over the directory in which FortiClientEMSOnlineInstaller.exe resides to execute arbitrary code on the system via uploading malicious Filter Library DLL files in that directory.
An Unsafe Search Path vulnerabilit
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2020-03-15
Published