An external control of file name or path vulnerability [CWE-73] in FortiClientMac version 7.2.3 and below, version 7.0.10 and below installer may allow a local attacker to execute arbitrary code or commands via writing a malicious configuration file in /tmp before starting the installation process.
References
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: fortinet

Published: 2024-04-10T13:24:56.859Z

Updated: 2024-08-22T18:27:36.614Z

Reserved: 2024-04-04T12:52:41.586Z

Link: CVE-2024-31492

cve-icon Vulnrichment

Updated: 2024-08-02T01:52:57.265Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-04-10T13:51:38.607

Modified: 2024-04-10T19:49:51.183

Link: CVE-2024-31492

cve-icon Redhat

No data.