CVE-2025-57716
14.10.2025, 16:15
An Uncontrolled Search Path Element vulnerability [CWE-427] in FortiClient Windows 7.4.0 through 7.4.3, 7.2.0 through 7.2.11, 7.0 all versions may allow a local low privileged user to perform a DLL hijacking attack via placing a malicious DLL to the FortiClient Online Installer installation folder.Enginsight
| Vendor | Product | Version |
|---|---|---|
| fortinet | forticlient | 7.0.0 ≤ 𝑥 < 7.2.12 |
| fortinet | forticlient | 7.4.0 ≤ 𝑥 < 7.4.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration