CVE-2025-25251: High severity Fortinet FortiClient Mac vulnerability
Published May 28, 2025
·Updated
An Incorrect Authorization vulnerability [CWE-863] in FortiClient Mac 7.4.0 through 7.4.2, 7.2.0 through 7.2.8, 7.0.0 through 7.0.14 may allow a local attacker to escalate privileges via crafted XPC messages.
Affected Software
3 affected components
Fortinet FortiClient Mac>=7.4.0<=7.4.2, >=7.2.0<=7.2.8, >=7.0.0<=7.0.14
Fortinet Forticlient Macos>=7.0.0<7.2.9
Fortinet Forticlient Macos>=7.4.0<7.4.3
Remediation
Information
Please upgrade to FortiClientMac version 7.4.3 or above
Please upgrade to FortiClientMac version 7.2.9 or above
Event History
May 28, 2025
CVE Published
via MITRE·07:53 AM
Data Sourced
via MITRE·07:53 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-25251?
The severity of CVE-2025-25251 is classified as high due to the potential for local privilege escalation.
2
How do I fix CVE-2025-25251?
To fix CVE-2025-25251, users should upgrade to FortiClient Mac version 7.4.3 or later, or the relevant patched versions.
3
What versions of FortiClient Mac are affected by CVE-2025-25251?
Affected versions of FortiClient Mac include 7.4.0 to 7.4.2, 7.2.0 to 7.2.8, and 7.0.0 to 7.0.14.
4
Can CVE-2025-25251 be exploited remotely?
No, CVE-2025-25251 requires local access for exploitation, making it a local privilege escalation vulnerability.
5
What type of vulnerability is CVE-2025-25251?
CVE-2025-25251 is categorized as an Incorrect Authorization vulnerability under CWE-863.