CVE-2024-47574: High severity fortinet forticlient ssl vpn vulnerability
A authentication bypass using an alternate path or channel in Fortinet FortiClientWindows version 7.4.0, versions 7.2.4 through 7.2.0, versions 7.0.12 through 7.0.0, and 6.4.10 through 6.4.0 allows low privilege attacker to execute arbitrary code with high privilege via spoofed named pipe messages.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-47574?
CVE-2024-47574 is categorized as a high-severity vulnerability due to the potential for arbitrary code execution with high privileges.
How do I fix CVE-2024-47574?
To fix CVE-2024-47574, users should update their Fortinet FortiClient to the latest version that addresses this vulnerability.
Who is affected by CVE-2024-47574?
CVE-2024-47574 affects users running Fortinet FortiClient versions 7.4.0, 7.2.4 down to 7.2.0, 7.0.12 down to 7.0.0, and 6.4.10 down to 6.4.0.
What type of vulnerability is CVE-2024-47574?
CVE-2024-47574 is an authentication bypass vulnerability that allows low privilege attackers to execute arbitrary code.
What can attackers achieve with CVE-2024-47574?
Attackers exploiting CVE-2024-47574 can execute arbitrary code with high privileges through spoofed named pipe messages.