cbcvebase.
CVE-2025-47761
published 2025-11-18

CVE-2025-47761: An Exposed IOCTL with Insufficient Access Control vulnerability [CWE-782] vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.3, FortiClientWindows…

PriorityP343high7.8CVSS 3.1
AVLACHPRLUINSCCHIHAH
EPSS
0.15%
5.1th percentile
An Exposed IOCTL with Insufficient Access Control vulnerability [CWE-782] vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.3, FortiClientWindows 7.2.0 through 7.2.9 may allow an authenticated local user to execute unauthorized code via fortips driver. Success of the attack would require bypassing the Windows memory protections such as Heap integrity and HSP. In addition, it requires a valid and running VPN IPSec connection.

Affected

7 ranges
VendorProductVersion rangeFixed in
fortinetforticlient
fortinetforticlient>= 7.2.0 < 7.2.107.2.10
fortinetforticlient>= 7.4.0 < 7.4.47.4.4
fortinetforticlientwindows
fortinetforticlientwindows7.2.0 – 7.2.9
fortinetforticlientwindows7.4.0 – 7.4.3
fortinetfortinet
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.