CVE-2024-36507

Severity CVSS v4.0:
Pending analysis
Type:
CWE-426 Untrusted Search Path
Publication date:
12/11/2024
Last modified:
14/11/2024

Description

A untrusted search path in Fortinet FortiClientWindows versions 7.4.0, versions 7.2.4 through 7.2.0, versions 7.0.12 through 7.0.0 allows an attacker to run arbitrary code via DLL hijacking and social engineering.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:fortinet:forticlient:*:*:*:*:*:windows:*:* 7.0.0 (including) 7.0.13 (excluding)
cpe:2.3:a:fortinet:forticlient:*:*:*:*:*:windows:*:* 7.2.0 (including) 7.2.5 (excluding)
cpe:2.3:a:fortinet:forticlient:7.4.0:*:*:*:*:windows:*:*


References to Advisories, Solutions, and Tools