Description
An improper authorization vulnerability [CWE-285] in FortiClient for Windows versions 7.0.1 and below and 6.4.2 and below may allow a local unprivileged attacker to escalate their privileges to SYSTEM via the named pipe responsible for Forticlient updates.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-22804 | An improper authorization vulnerability [CWE-285] in FortiClient for Windows versions 7.0.1 and below and 6.4.2 and below may allow a local unprivileged attacker to escalate their privileges to SYSTEM via the named pipe responsible for Forticlient updates. |
References
| Link | Providers |
|---|---|
| https://fortiguard.com/advisory/FG-IR-20-079 |
|
History
Fri, 25 Oct 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2024-10-25T13:44:33.615Z
Reserved: 2021-07-06T00:00:00.000Z
Link: CVE-2021-36183
Updated: 2024-08-04T00:54:50.625Z
Status : Modified
Published: 2021-11-02T19:15:07.830
Modified: 2024-11-21T06:13:16.457
Link: CVE-2021-36183
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD