CVE-2024-36506: Medium severity fortinet ems vulnerability
An improper verification of source of a communication channel vulnerability [CWE-940] in FortiClientEMS 7.4.0, 7.2.0 through 7.2.4, 7.0 all versions, 6.4 all versions may allow a remote attacker to bypass the trusted host feature via session connection.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-36506?
CVE-2024-36506 has been assigned a severity rating according to its potential impact on the security of affected FortiClientEMS versions.
How do I fix CVE-2024-36506?
To fix CVE-2024-36506, users should update FortiClientEMS to the latest version that addresses the vulnerability.
What versions are affected by CVE-2024-36506?
CVE-2024-36506 affects FortiClientEMS versions 7.4.0, 7.2.0 through 7.2.4, and all versions of 7.0 and 6.4.
Can CVE-2024-36506 be exploited remotely?
Yes, CVE-2024-36506 allows a remote attacker to bypass the trusted host feature via session connection.
What type of vulnerability is CVE-2024-36506?
CVE-2024-36506 is characterized as an improper verification of source of a communication channel vulnerability.