CVE-2025-62676: High severity Fortinet FortiClientWindows vulnerability
An Improper Link Resolution Before File Access ('Link Following') vulnerability [CWE-59] vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.4, FortiClientWindows 7.2.0 through 7.2.12, FortiClientWindows 7.0 all versions may allow a local low-privilege attacker to perform an arbitrary file write with elevated permissions via crafted named pipe messages.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-62676?
CVE-2025-62676 is classified as a medium severity vulnerability.
How do I fix CVE-2025-62676?
To fix CVE-2025-62676, upgrade FortiClientWindows to the latest version provided by Fortinet.
Who is affected by CVE-2025-62676?
CVE-2025-62676 affects FortiClientWindows versions 7.4.0 through 7.4.4, 7.2.0 through 7.2.12, and all versions of 7.0.
What type of vulnerability is CVE-2025-62676?
CVE-2025-62676 is an Improper Link Resolution Before File Access vulnerability.
Can CVE-2025-62676 be exploited by remote attackers?
CVE-2025-62676 is primarily exploitable by local low-privilege attackers.