Description
Multiple vulnerabilities including an incorrect permission assignment for critical resource [CWE-732] vulnerability and a time-of-check time-of-use (TOCTOU) race condition [CWE-367] vulnerability in Fortinet FortiClientWindows before 7.0.7 allows attackers on the same file sharing network to execute commands via writing data into a windows pipe.
No analysis available yet.
Remediation
Vendor Solution
Please upgrade to FortiClientWindows version 7.2.0 or above Please upgrade to FortiClientWindows version 7.0.8 or above
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-46916 | Multiple vulnerabilities including an incorrect permission assignment for critical resource [CWE-732] vulnerability and a time-of-check time-of-use (TOCTOU) race condition [CWE-367] vulnerability in Fortinet FortiClientWindows before 7.0.7 allows attackers on the same file sharing network to execute commands via writing data into a windows pipe. |
References
| Link | Providers |
|---|---|
| https://fortiguard.com/psirt/FG-IR-22-429 |
|
History
Wed, 23 Oct 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2024-10-23T14:28:47.955Z
Reserved: 2022-10-27T07:40:06.589Z
Link: CVE-2022-43946
Updated: 2024-08-03T13:40:06.730Z
Status : Modified
Published: 2023-04-11T17:15:07.637
Modified: 2024-11-21T07:27:23.573
Link: CVE-2022-43946
No data.
OpenCVE Enrichment
No data.
EUVD