CVE-2024-50570
published 2024-12-18CVE-2024-50570: A Cleartext Storage of Sensitive Information vulnerability [CWE-312] in FortiClientWindows 7.4.0 through 7.4.1, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13 and…
PriorityP277medium5CVSS 3.1
AVLACHPRHUIRSCCHINAN
ITWVulnCheck KEV
Exploited in the wild
EPSS
0.14%
3.9th percentile
A Cleartext Storage of Sensitive Information vulnerability [CWE-312] in FortiClientWindows 7.4.0 through 7.4.1, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13 and FortiClientLinux 7.4.0 through 7.4.2, 7.2.0 through 7.2.7, 7.0.0 through 7.0.13 may permit a local authenticated user to retrieve VPN password via memory dump, due to JavaScript's garbage collector
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fortinet | forticlient | — | — |
| fortinet | forticlient | >= 7.0.0 < 7.0.14 | 7.0.14 |
| fortinet | forticlient | >= 7.0.0 < 7.2.8 | 7.2.8 |
| fortinet | forticlient | >= 7.2.0 < 7.2.7 | 7.2.7 |
| fortinet | forticlient | >= 7.4.0 < 7.4.2 | 7.4.2 |
| fortinet | forticlient | >= 7.4.0 < 7.4.3 | 7.4.3 |
| fortinet | forticlientlinux | — | — |
| fortinet | forticlientlinux | 7.0.0 – 7.0.13 | — |
| fortinet | forticlientlinux | 7.2.0 – 7.2.7 | — |
| fortinet | forticlientlinux | 7.4.0 – 7.4.2 | — |
| fortinet | forticlientmac | 7.0.0 – 7.0.14 | — |
| fortinet | forticlientmac | 7.2.0 – 7.2.7 | — |
| fortinet | forticlientmac | 7.4.0 – 7.4.2 | — |
| fortinet | forticlientwindows | — | — |
| fortinet | forticlientwindows | — | — |
| fortinet | forticlientwindows | 7.0.0 – 7.0.13 | — |
| fortinet | forticlientwindows | 7.2.0 – 7.2.5 | — |
Detection & IOCsextracted from sources · hover to see the quote
- →VPN password exposed in cleartext in process memory due to JavaScript garbage collector behavior; a local authenticated attacker can retrieve credentials via memory dump of FortiClientWindows or FortiClientLinux processes ↗
- ·Affected FortiClientWindows versions: 7.4.0–7.4.1, 7.2.0–7.2.6, 7.0.0–7.0.13. Affected FortiClientLinux versions: 7.4.0–7.4.2, 7.2.0–7.2.7, 7.0.0–7.0.13. Exploitation requires local authenticated access and the ability to perform a memory dump of the FortiClient process. ↗
CVSS provenance
nvdv3.15.0MEDIUMCVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:C/C:H/I:N/A:N
vulncheck5.0MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Fortinet
A Cleartext Storage of Sensitive Information vulnerability [CWE-312] in FortiClientWindows 7.4.0 through 7.4.1, 7.2.0 th...
vendor_fortinet·2024-12-18·CVSS 5.0
CVE-2024-50570 [MEDIUM] CWE-312 A Cleartext Storage of Sensitive Information vulnerability [CWE-312] in FortiClientWindows 7.4.0 through 7.4.1, 7.2.0 th...
FG-IR-23-278: A Cleartext Storage of Sensitive Information vulnerability [CWE-312] in FortiClientWindows 7.4.0 through 7.4.1, 7.2.0 th...
A Cleartext Storage of Sensitive Information vulnerability [CWE-312] in FortiClientWindows 7.4.0 through 7.4.1, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13 and FortiClientLinux 7.4.0 through 7.4.2, 7.2.0 through 7.2.7, 7.0.0 through 7.0.13 may permit a local authenticated user to retrieve VPN password via memory dump, due to JavaScript's garbage collector
CVEs: CVE-2024-50570
CWEs: CWE-312
CVSS: 5.0 (medium)
Affected products: FortiClient, FortiClientLinux, FortiClientWindows
VulnCheck
Fortinet forticlient Cleartext Storage of Sensitive Information
vulncheck·2024·CVSS 5.0
CVE-2024-50570 [MEDIUM] Fortinet forticlient Cleartext Storage of Sensitive Information
Fortinet forticlient Cleartext Storage of Sensitive Information
A Cleartext Storage of Sensitive Information vulnerability [CWE-312] in FortiClientWindows 7.4.0 through 7.4.1, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13 and FortiClientLinux 7.4.0 through 7.4.2, 7.2.0 through 7.2.7, 7.0.0 through 7.0.13 may permit a local authenticated user to retrieve VPN password via memory dump, due to JavaScript's garbage collector
Affected: Fortinet forticlient
Required Action: Apply remediations or mitigations per vendor instructions or discontinue use of the product if remediation or mitigations are unavailable.
Exploitation References: https://www.volexity.com/blog/2024/11/15/brazenbamboo-weaponizes-forticlient-vulnerability-to-steal-vpn-credentials-via-deepdata/
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2024-12-18
Published
Exploited in the wild