cbcvebase.
CVE-2022-26113
published 2022-07-19

CVE-2022-26113: An execution with unnecessary privileges vulnerability [CWE-250] in FortiClientWindows 7.0.0 through 7.0.3, 6.4.0 through 6.4.7, 6.2.0 through 6.2.9, 6.0.0…

PriorityP432high7.1CVSS 3.1
AVLACLPRLUINSUCNIHAH
EPSS
0.31%
22.6th percentile
An execution with unnecessary privileges vulnerability [CWE-250] in FortiClientWindows 7.0.0 through 7.0.3, 6.4.0 through 6.4.7, 6.2.0 through 6.2.9, 6.0.0 through 6.0.10 may allow a local attacker to perform an arbitrary file write on the system.

Affected

7 ranges
VendorProductVersion rangeFixed in
fortinetforticlient
fortinetforticlient6.0.0 – 6.0.10
fortinetforticlient6.2.0 – 6.2.9
fortinetforticlient6.4.0 – 6.4.7
fortinetforticlient7.0.0 – 7.0.3
fortinetforticlientwindows
fortinetfortinet_forticlientwindows
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.