CVE-2023-37939
10.10.2023, 17:15
An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] inFortiClient for Windows 7.2.0, 7.0 all versions, 6.4 all versions, 6.2 all versions, Linux 7.2.0, 7.0 all versions, 6.4 all versions, 6.2 all versions and Mac 7.2.0 through 7.2.1, 7.0 all versions, 6.4 all versions, 6.2 all versions, may allow a local authenticated attacker with no Administrative privileges to retrieve the list offiles or folders excluded from malware scanning.Enginsight
Vendor | Product | Version |
---|---|---|
fortinet | forticlient | 6.2.0 ≤ 𝑥 ≤ 6.2.9 |
fortinet | forticlient | 6.2.0 ≤ 𝑥 ≤ 6.2.9 |
fortinet | forticlient | 6.2.0 ≤ 𝑥 ≤ 6.2.9 |
fortinet | forticlient | 6.4.0 ≤ 𝑥 ≤ 6.4.9 |
fortinet | forticlient | 6.4.0 ≤ 𝑥 ≤ 6.4.10 |
fortinet | forticlient | 6.4.0 ≤ 𝑥 ≤ 6.4.10 |
fortinet | forticlient | 7.0.0 ≤ 𝑥 ≤ 7.0.9 |
fortinet | forticlient | 7.0.0 ≤ 𝑥 ≤ 7.0.9 |
fortinet | forticlient | 7.0.0 ≤ 𝑥 ≤ 7.0.9 |
fortinet | forticlient | 7.2.0 |
fortinet | forticlient | 7.2.0 |
fortinet | forticlient | 7.2.0 |
fortinet | forticlient | 7.2.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration