CVE-2021-24019: Critical severity fortinet forticlient vulnerability
Published Oct 6, 2021
·Updated
An insufficient session expiration vulnerability [CWE- 613] in FortiClientEMS versions 6.4.2 and below, 6.2.8 and below may allow an attacker to reuse the unexpired admin user session IDs to gain admin privileges, should the attacker be able to obtain that session ID (via other, hypothetical attacks)
Affected Software
2 affected components
Fortinet Forticlient Endpoint Management Server<6.2.9
Fortinet Forticlient Endpoint Management Server>=6.4.0<6.4.2
Event History
Oct 6, 2021
CVE Published
via MITRE·09:41 AM
Data Sourced
via MITRE·09:41 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2021-24019.
2
What is the severity rating of CVE-2021-24019?
CVE-2021-24019 has a severity rating of 9.8 (critical).
3
Which versions of FortiClientEMS are affected by CVE-2021-24019?
FortiClientEMS versions 6.4.2 and below, 6.2.9 and below are affected by CVE-2021-24019.
4
What is the CWE ID for this vulnerability?
The CWE ID for this vulnerability is CWE-613.
5
How can an attacker exploit CVE-2021-24019?
An attacker can exploit CVE-2021-24019 by reusing unexpired admin user session IDs to gain admin privileges.