cbcvebase.
CVE-2022-26113
published 2022-07-19

CVE-2022-26113: An execution with unnecessary privileges vulnerability [CWE-250] in FortiClientWindows 7.0.0 through 7.0.3, 6.4.0 through 6.4.7, 6.2.0 through 6.2.9, 6.0.0…

PriorityP432high7.1CVSS 3.1
AVLACLPRLUINSUCNIHAH
EPSS
0.33%
23.3th percentile
An execution with unnecessary privileges vulnerability [CWE-250] in FortiClientWindows 7.0.0 through 7.0.3, 6.4.0 through 6.4.7, 6.2.0 through 6.2.9, 6.0.0 through 6.0.10 may allow a local attacker to perform an arbitrary file write on the system.

Affected

7 ranges
VendorProductVersion rangeFixed in
fortinetforticlient——
fortinetforticlient6.0.0 – 6.0.10—
fortinetforticlient6.2.0 – 6.2.9—
fortinetforticlient6.4.0 – 6.4.7—
fortinetforticlient7.0.0 – 7.0.3—
fortinetforticlientwindows——
fortinetfortinet_forticlientwindows——
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.