First published: Thu Nov 21 2019(Updated: )
A clear text storage of sensitive information vulnerability in FortiClient for Mac may allow a local attacker to read sensitive information logged in the console window when the user connects to an SSL VPN Gateway.
Credit: psirt@fortinet.com
Affected Software | Affected Version | How to fix |
---|---|---|
Fortinet Forticlient | >=6.0.0<=6.0.7 | |
Fortinet Forticlient | =6.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-15704 is a clear text storage of sensitive information vulnerability in FortiClient for Mac.
CVE-2019-15704 may allow a local attacker to read sensitive information logged in the console window when the user connects to an SSL VPN Gateway.
The severity of CVE-2019-15704 is medium with a CVSS score of 5.5.
FortiClient for Mac versions 6.0.0 to 6.0.7 and version 6.2.0 are affected by CVE-2019-15704.
To fix the CVE-2019-15704 vulnerability, update FortiClient for Mac to a version that is not affected by the vulnerability.