CVE-2019-15704: Medium severity fortinet forticlient vulnerability
Published Nov 21, 2019
·Updated
A clear text storage of sensitive information vulnerability in FortiClient for Mac may allow a local attacker to read sensitive information logged in the console window when the user connects to an SSL VPN Gateway.
Affected Software
2 affected components
Fortinet Forticlient Macos>=6.0.0<=6.0.7
Fortinet Forticlient Macos=6.2.0
Event History
Nov 21, 2019
CVE Published
via MITRE·02:53 PM
Data Sourced
via MITRE·02:53 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2019-15704?
CVE-2019-15704 is a clear text storage of sensitive information vulnerability in FortiClient for Mac.
2
How does CVE-2019-15704 affect FortiClient for Mac?
CVE-2019-15704 may allow a local attacker to read sensitive information logged in the console window when the user connects to an SSL VPN Gateway.
3
What is the severity of CVE-2019-15704?
The severity of CVE-2019-15704 is medium with a CVSS score of 5.5.
4
Which versions of FortiClient for Mac are affected by CVE-2019-15704?
FortiClient for Mac versions 6.0.0 to 6.0.7 and version 6.2.0 are affected by CVE-2019-15704.
5
How can I fix CVE-2019-15704 vulnerability?
To fix the CVE-2019-15704 vulnerability, update FortiClient for Mac to a version that is not affected by the vulnerability.