cbcvebase.
CVE-2024-36507
published 2024-11-12

CVE-2024-36507: A untrusted search path in Fortinet FortiClientWindows versions 7.4.0, versions 7.2.4 through 7.2.0, versions 7.0.12 through 7.0.0 allows an attacker to run…

high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
A untrusted search path in Fortinet FortiClientWindows versions 7.4.0, versions 7.2.4 through 7.2.0, versions 7.0.12 through 7.0.0 allows an attacker to run arbitrary code via DLL hijacking and social engineering.

Affected

9 ranges
VendorProductVersion rangeFixed in
fortinetforticlient
fortinetforticlient
fortinetforticlient>= 7.0.0 < 7.0.137.0.13
fortinetforticlient>= 7.2.0 < 7.2.57.2.5
fortinetforticlientwindows
fortinetforticlientwindows
fortinetforticlientwindows7.0.0 – 7.0.12
fortinetforticlientwindows7.2.0 – 7.2.4
fortinetfortinet