Fortinet Forticlientwindows vulnerabilities

25 known vulnerabilities affecting fortinet/forticlientwindows.

Total CVEs
25
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH15MEDIUM7LOW3

Vulnerabilities

Page 1 of 2
CVE-2025-62676HIGHCVSS 7.1≥ 7.4.0, ≤ 7.4.4≥ 7.2.0, ≤ 7.2.12+1 more2026-02-10
CVE-2025-62676 [HIGH] CWE-59 CVE-2025-62676: An Improper Link Resolution Before File Access ('Link Following') vulnerability [CWE-59] vulnerabili An Improper Link Resolution Before File Access ('Link Following') vulnerability [CWE-59] vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.4, FortiClientWindows 7.2.0 through 7.2.12, FortiClientWindows 7.0 all versions may allow a local low-privilege attacker to perform an arbitrary file write with elevated permissions via crafted named pi
cvelistv5nvd
CVE-2025-47761HIGHCVSS 7.8≥ 7.4.0, ≤ 7.4.3≥ 7.2.0, ≤ 7.2.92025-11-18
CVE-2025-47761 [HIGH] CWE-782 CVE-2025-47761: An Exposed IOCTL with Insufficient Access Control vulnerability [CWE-782] vulnerability in Fortinet An Exposed IOCTL with Insufficient Access Control vulnerability [CWE-782] vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.3, FortiClientWindows 7.2.0 through 7.2.9 may allow an authenticated local user to execute unauthorized code via fortips driver. Success of the attack would require bypassing the Windows memory protections such as Hea
cvelistv5nvd
CVE-2025-46373HIGHCVSS 7.8≥ 7.4.0, ≤ 7.4.3≥ 7.2.0, ≤ 7.2.82025-11-18
CVE-2025-46373 [HIGH] CWE-122 CVE-2025-46373: A Heap-based Buffer Overflow vulnerability [CWE-122] vulnerability in Fortinet FortiClientWindows 7. A Heap-based Buffer Overflow vulnerability [CWE-122] vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.3, FortiClientWindows 7.2.0 through 7.2.8 may allow an authenticated local IPSec user to execute arbitrary code or commands via "fortips_74.sys". The attacker would need to bypass the Windows heap integrity protections
cvelistv5nvd
CVE-2025-54660MEDIUMCVSS 5.5≥ 7.4.0, ≤ 7.4.3≥ 7.2.0, ≤ 7.2.10+1 more2025-11-18
CVE-2025-54660 [MEDIUM] CWE-489 CVE-2025-54660: An active debug code vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.3, FortiClientWi An active debug code vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.3, FortiClientWindows 7.2.0 through 7.2.10, FortiClientWindows 7.0 all versions may allow a local attacker to run the application step by step and retrieve the saved VPN user password
cvelistv5nvd
CVE-2025-57716HIGHCVSS 7.3≥ 7.4.0, ≤ 7.4.3≥ 7.2.0, ≤ 7.2.11+1 more2025-10-14
CVE-2025-57716 [MEDIUM] CWE-427 CVE-2025-57716: An Uncontrolled Search Path Element vulnerability [CWE-427] in FortiClient Windows 7.4.0 through 7.4 An Uncontrolled Search Path Element vulnerability [CWE-427] in FortiClient Windows 7.4.0 through 7.4.3, 7.2.0 through 7.2.11, 7.0 all versions may allow a local low privileged user to perform a DLL hijacking attack via placing a malicious DLL to the FortiClient Online Installer installation folder.
cvelistv5nvd
CVE-2024-54019MEDIUMCVSS 6.5v7.4.0≥ 7.2.0, ≤ 7.2.6+1 more2025-06-10
CVE-2024-54019 [MEDIUM] CWE-297 CVE-2024-54019: A improper validation of certificate with host mismatch in Fortinet FortiClientWindows version 7.4.0 A improper validation of certificate with host mismatch in Fortinet FortiClientWindows version 7.4.0, versions 7.2.0 through 7.2.6, and 7.0 all versions allow an unauthorized attacker to redirect VPN connections via DNS spoofing or another form of redirection.
cvelistv5nvd
CVE-2025-24473LOWCVSS 3.7≥ 7.2.0, ≤ 7.2.1≥ 7.0.13, ≤ 7.0.142025-05-28
CVE-2025-24473 [LOW] CWE-497 CVE-2025-24473: A exposure of sensitive system information to an unauthorized control sphere vulnerability in Fortin A exposure of sensitive system information to an unauthorized control sphere vulnerability in Fortinet FortiClientWindows 7.2.0 through 7.2.1, FortiClientWindows 7.0.13 through 7.0.14 may allow an unauthorized remote attacker to view application information via navigation to a hosted webpage, if Windows is configured to accept incoming connections to p
cvelistv5nvd
CVE-2020-9295HIGHCVSS 7.5≥ 6.2.0, ≤ 6.2.6≥ 6.0.0, ≤ 6.0.102025-03-17
CVE-2020-9295 [MEDIUM] CWE-358 CVE-2020-9295: FortiOS 6.2 running AV engine version 6.00142 and below, FortiOS 6.4 running AV engine version 6.001 FortiOS 6.2 running AV engine version 6.00142 and below, FortiOS 6.4 running AV engine version 6.00144 and below and FortiClient 6.2 running AV engine version 6.00137 and below may not immediately detect certain types of malformed or non-standard RAR archives, potentially containing malicious files. Based on the samples provided, FortiClient will dete
cvelistv5nvd
CVE-2024-40586MEDIUMCVSS 6.7v7.4.0≥ 7.2.0, ≤ 7.2.6+1 more2025-02-11
CVE-2024-40586 [MEDIUM] CWE-284 CVE-2024-40586: An Improper Access Control vulnerability [CWE-284] in FortiClient Windows version 7.4.0, version 7.2 An Improper Access Control vulnerability [CWE-284] in FortiClient Windows version 7.4.0, version 7.2.6 and below, version 7.0.13 and below may allow a local user to escalate his privileges via FortiSSLVPNd service pipe.
cvelistv5nvd
CVE-2024-50564LOWCVSS 3.3v7.4.0≥ 7.2.0, ≤ 7.2.7+2 more2025-01-14
CVE-2024-50564 [LOW] CWE-321 CVE-2024-50564: A use of hard-coded cryptographic key in Fortinet FortiClientWindows version 7.4.0, 7.2.x all versio A use of hard-coded cryptographic key in Fortinet FortiClientWindows version 7.4.0, 7.2.x all versions, 7.0.x all versions, and 6.4.x all versions may allow a low-privileged user to decrypt interprocess communication via monitoring named piped.
cvelistv5nvd
CVE-2024-50570MEDIUMCVSS 5.0v7.4.0≥ 7.2.0, ≤ 7.2.5+1 more2024-12-18
CVE-2024-50570 [MEDIUM] CWE-312 CVE-2024-50570: A Cleartext Storage of Sensitive Information vulnerability [CWE-312] in FortiClientWindows 7.4.0 thr A Cleartext Storage of Sensitive Information vulnerability [CWE-312] in FortiClientWindows 7.4.0 through 7.4.1, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13 and FortiClientLinux 7.4.0 through 7.4.2, 7.2.0 through 7.2.7, 7.0.0 through 7.0.13 may permit a local authenticated user to retrieve VPN password via memory dump, due to JavaScript's garbage colle
cvelistv5nvd
CVE-2024-47574HIGHCVSS 7.8v7.4.0≥ 7.2.0, ≤ 7.2.4+2 more2024-11-13
CVE-2024-47574 [HIGH] CWE-288 CVE-2024-47574: A authentication bypass using an alternate path or channel in Fortinet FortiClientWindows version 7. A authentication bypass using an alternate path or channel in Fortinet FortiClientWindows version 7.4.0, versions 7.2.4 through 7.2.0, versions 7.0.12 through 7.0.0, and 6.4.10 through 6.4.0 allows low privilege attacker to execute arbitrary code with high privilege via spoofed named pipe messages.
cvelistv5nvd
CVE-2024-36507HIGHCVSS 7.8v7.4.0≥ 7.2.0, ≤ 7.2.4+1 more2024-11-12
CVE-2024-36507 [HIGH] CWE-426 CVE-2024-36507: A untrusted search path in Fortinet FortiClientWindows versions 7.4.0, versions 7.2.4 through 7.2.0, A untrusted search path in Fortinet FortiClientWindows versions 7.4.0, versions 7.2.4 through 7.2.0, versions 7.0.12 through 7.0.0 allows an attacker to run arbitrary code via DLL hijacking and social engineering.
cvelistv5nvd
CVE-2024-36513HIGHCVSS 8.8≥ 7.2.0, ≤ 7.2.4≥ 7.0.0, ≤ 7.0.12+1 more2024-11-12
CVE-2024-36513 [HIGH] CWE-270 CVE-2024-36513: A privilege context switching error vulnerability [CWE-270] in FortiClient Windows version 7.2.4 and A privilege context switching error vulnerability [CWE-270] in FortiClient Windows version 7.2.4 and below, version 7.0.12 and below, 6.4 all versions may allow an authenticated user to escalate their privileges via lua auto patch scripts.
cvelistv5nvd
CVE-2024-31489HIGHCVSS 8.1≥ 7.2.0, ≤ 7.2.2≥ 7.0.0, ≤ 7.0.112024-09-10
CVE-2024-31489 [MEDIUM] CWE-295 CVE-2024-31489: AAn improper certificate validation vulnerability [CWE-295] in FortiClientWindows 7.2.0 through 7.2. AAn improper certificate validation vulnerability [CWE-295] in FortiClientWindows 7.2.0 through 7.2.2, 7.0.0 through 7.0.11, FortiClientLinux 7.2.0, 7.0.0 through 7.0.11 and FortiClientMac 7.0.0 through 7.0.11, 7.2.0 through 7.2.4 may allow a remote and unauthenticated attacker to perform a Man-in-the-Middle attack on the communication channel betwe
cvelistv5nvd
CVE-2022-45856MEDIUMCVSS 5.9≥ 7.0.0, ≤ 7.0.7≥ 6.4.0, ≤ 6.4.102024-09-10
CVE-2022-45856 [MEDIUM] CWE-295 CVE-2022-45856: An improper certificate validation vulnerability [CWE-295] in FortiClientWindows 6.4 all versions, 7 An improper certificate validation vulnerability [CWE-295] in FortiClientWindows 6.4 all versions, 7.0.0 through 7.0.7, FortiClientMac 6.4 all versions, 7.0 all versions, 7.2.0 through 7.2.4, FortiClientLinux 6.4 all versions, 7.0 all versions, 7.2.0 through 7.2.4, FortiClientAndroid 6.4 all versions, 7.0 all versions, 7.2.0 and FortiClientiOS 5.6 a
cvelistv5nvd
CVE-2023-41840HIGHCVSS 7.8≥ 7.2.0, ≤ 7.2.1v7.0.92023-11-14
CVE-2023-41840 [HIGH] CWE-426 CVE-2023-41840: A untrusted search path vulnerability in Fortinet FortiClientWindows 7.0.9 allows an attacker to per A untrusted search path vulnerability in Fortinet FortiClientWindows 7.0.9 allows an attacker to perform a DLL Hijack attack via a malicious OpenSSL engine library in the search path.
cvelistv5nvd
CVE-2022-40681HIGHCVSS 7.1≥ 7.0.0, ≤ 7.0.7≥ 6.4.0, ≤ 6.4.8+2 more2023-11-14
CVE-2022-40681 [HIGH] CWE-863 CVE-2022-40681: A incorrect authorization in Fortinet FortiClient (Windows) 7.0.0 - 7.0.7, 6.4.0 - 6.4.9, 6.2.0 - 6. A incorrect authorization in Fortinet FortiClient (Windows) 7.0.0 - 7.0.7, 6.4.0 - 6.4.9, 6.2.0 - 6.2.9 and 6.0.0 - 6.0.10 allows an attacker to cause denial of service via sending a crafted request to a specific named pipe.
cvelistv5nvd
CVE-2023-33304MEDIUMCVSS 5.5≥ 7.2.0, ≤ 7.2.1≥ 7.0.0, ≤ 7.0.92023-11-14
CVE-2023-33304 [MEDIUM] CWE-798 CVE-2023-33304: A use of hard-coded credentials vulnerability in Fortinet FortiClient Windows 7.0.0 - 7.0.9 and 7.2. A use of hard-coded credentials vulnerability in Fortinet FortiClient Windows 7.0.0 - 7.0.9 and 7.2.0 - 7.2.1 allows an attacker to bypass system protections via the use of static credentials.
cvelistv5nvd
CVE-2023-37939LOWCVSS 3.3v7.2.0≥ 7.0.0, ≤ 7.0.9+2 more2023-10-10
CVE-2023-37939 [LOW] CWE-200 CVE-2023-37939: An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiClient An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiClient for Windows 7.2.0, 7.0 all versions, 6.4 all versions, 6.2 all versions, Linux 7.2.0, 7.0 all versions, 6.4 all versions, 6.2 all versions and Mac 7.2.0 through 7.2.1, 7.0 all versions, 6.4 all versions, 6.2 all versions, may allow a local authenticated
cvelistv5nvd