CVE-2024-21753
published 2024-09-10CVE-2024-21753: A improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiClientEMS versions 7.2.0 through 7.2.4, 7.0.0 through 7.0.13…
PriorityP433medium6CVSS 3.1
AVNACLPRHUINSUCLILAH
EPSS
0.74%
50.3th percentile
A improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiClientEMS versions 7.2.0 through 7.2.4, 7.0.0 through 7.0.13, 6.4.0 through 6.4.9, 6.2.0 through 6.2.9, 6.0.0 through 6.0.8, 1.2.1 through 1.2.5 allows attacker to perform a denial of service, read or write a limited number of files via specially crafted HTTP requests
Affected
18 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fortinet | forticlient_endpoint_management_server | 1.2.1 – 1.2.5 | — |
| fortinet | forticlient_endpoint_management_server | 6.0.0 – 6.0.8 | — |
| fortinet | forticlient_endpoint_management_server | 6.2.0 – 6.2.9 | — |
| fortinet | forticlient_endpoint_management_server | 6.4.0 – 6.4.9 | — |
| fortinet | forticlient_endpoint_management_server | 7.0.0 – 7.0.13 | — |
| fortinet | forticlient_endpoint_management_server | 7.2.0 – 7.2.4 | — |
| fortinet | forticlientems | — | — |
| fortinet | forticlientems | — | — |
| fortinet | forticlientems | 1.2.2 – 1.2.5 | — |
| fortinet | forticlientems | 6.0.0 – 6.0.6 | — |
| fortinet | forticlientems | 6.2.0 – 6.2.4 | — |
| fortinet | forticlientems | 6.2.6 – 6.2.9 | — |
| fortinet | forticlientems | 6.4.0 – 6.4.4 | — |
| fortinet | forticlientems | 6.4.7 – 6.4.9 | — |
| fortinet | forticlientems | 7.0.0 – 7.0.13 | — |
| fortinet | forticlientems | 7.2.0 – 7.2.2 | — |
| fortinet | forticlientendpointmanagementserver | — | — |
| fortinet | fortinet | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Fortinet
A improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiClientEMS versions 7.2...
vendor_fortinet·2024-09-10·CVSS 5.5
CVE-2024-21753 [MEDIUM] CWE-22 A improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiClientEMS versions 7.2...
FG-IR-23-362: A improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiClientEMS versions 7.2...
A improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiClientEMS versions 7.2.0 through 7.2.4, 7.0.0 through 7.0.13, 6.4.0 through 6.4.9, 6.2.0 through 6.2.9, 6.0.0 through 6.0.8, 1.2.1 through 1.2.5 allows attacker to perform a denial of service, read or write a limited number of files via specially crafted HTTP requests
CVEs: CVE-2024-21753
CWEs: CWE-22
CVSS: 5.5 (medium)
Affected products: FortiClientEMS, FortiClientendpointmanagementserver, Fortinet
GHSA
GHSA-8832-5jj9-833x: A improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiClientEMS versions 7
ghsa_unreviewed·2024-09-10
CVE-2024-21753 [MEDIUM] CWE-22 GHSA-8832-5jj9-833x: A improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiClientEMS versions 7
A improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiClientEMS versions 7.2.0 through 7.2.4, 7.0.0 through 7.0.13, 6.4.0 through 6.4.9, 6.2.0 through 6.2.9, 6.0.0 through 6.0.8, 1.2.1 through 1.2.5 allows attacker to perform a denial of service, read or write a limited number of files via specially crafted HTTP requests
No detection rules found.
No public exploits indexed.
Wiz
CVE-2026-21643 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 9.8
CVE-2026-21643 [CRITICAL] CVE-2026-21643 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-21643 :
FortiClient EMS vulnerability analysis and mitigation
An improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiClientEMS 7.4.4 may allow an unauthenticated attacker to execute unauthorized code or commands via specifically crafted HTTP requests.
Source : NVD
## 9.8
Score
Published February 6, 2026
Severity CRITICAL
CNA Score 9.8
Affected Technologies
FortiClient EMS
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 20.6
Exploitation Probability (EPSS) 0.1
Affected packages and libraries
cpe:2.3:a:fortinet:forticlient_endpoint_management_server
Sources
Windows Severity CRITICAL Has Fix Added at: Feb 11
Wiz
CVE-2026-35616 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 9.8
CVE-2026-35616 [CRITICAL] CVE-2026-35616 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-35616 :
FortiClient EMS vulnerability analysis and mitigation
A improper access control vulnerability in Fortinet FortiClientEMS 7.4.5 through 7.4.6 may allow an unauthenticated attacker to execute unauthorized code or commands via crafted requests.
Source : NVD
## 9.8
Score
Published April 4, 2026
Severity CRITICAL
CNA Score 9.8
High-profile Vulnerability Yes
Affected Technologies
FortiClient EMS
Has Public Exploit Yes
Has CISA KEV Exploit Yes
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 90.6
Exploitation Probability (EPSS) 6
Affected packages and libraries
cpe:2.3:a:fortinet:forticlient_enterprise_management_server
Sources
Windows Severity CRITICAL Has Fix Added at: Apr 05, 2026
## Get a CVE risk assessmen
2024-09-10
Published