CVE-2024-40586
EUVD-2025-498311.02.2025, 17:15
An Improper Access Control vulnerability [CWE-284] in FortiClient Windows version 7.4.0, version 7.2.6 and below, version 7.0.13 and below may allow a local user to escalate his privileges via FortiSSLVPNd service pipe.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| fortinet | forticlient | 7.0.3 ≤ 𝑥 < 7.0.14 |
| fortinet | forticlient | 7.2.0 ≤ 𝑥 < 7.2.7 |
| fortinet | forticlient | 7.4.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration