CVE-2018-13368: Command Injection
Published May 30, 2019
·Updated
A local privilege escalation in Fortinet FortiClient for Windows 6.0.4 and earlier allows attacker to execute unauthorized code or commands via the command injection.
Affected Software
1 affected component
Fortinet FortiClient Windows<=6.0.4
Event History
May 30, 2019
CVE Published
via MITRE·04:27 PM
Data Sourced
via MITRE·04:27 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2018-13368?
CVE-2018-13368 is a local privilege escalation vulnerability found in Fortinet FortiClient for Windows 6.0.4 and earlier.
2
How does CVE-2018-13368 impact the affected software?
CVE-2018-13368 allows an attacker to execute unauthorized code or commands through command injection.
3
What is the severity of CVE-2018-13368?
CVE-2018-13368 has a severity rating of 7.8 (high).
4
How can I fix CVE-2018-13368?
To fix CVE-2018-13368, users should update Fortinet FortiClient to a version later than 6.0.4.
5
Where can I find more information about CVE-2018-13368?
More information about CVE-2018-1368 can be found in the FortiGuard Advisory FG-IR-18-108.