CVE-2016-8493: Critical severity fortinet forticlient ssl vpn vulnerability
Published Jun 26, 2017
·Updated
In FortiClientWindows 5.4.1 and 5.4.2, an attacker may escalate privilege via a FortiClientNamedPipe vulnerability.
Affected Software
2 affected components
Fortinet FortiClient Windows=5.4.1
Fortinet FortiClient Windows=5.4.2
Event History
Jun 26, 2017
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2016-8493?
CVE-2016-8493 is rated as a high severity vulnerability due to its potential for privilege escalation.
2
How do I fix CVE-2016-8493?
To fix CVE-2016-8493, upgrade FortiClient to version 5.4.3 or later.
3
What software versions are affected by CVE-2016-8493?
CVE-2016-8493 affects FortiClient versions 5.4.1 and 5.4.2 on Windows.
4
What type of vulnerability is CVE-2016-8493?
CVE-2016-8493 is a privilege escalation vulnerability that can be exploited via FortiClientNamedPipe.
5
Who is the vendor of the software impacted by CVE-2016-8493?
The vendor of the impacted software in CVE-2016-8493 is Fortinet.