CVE-2026-84386: Medium severity Fortinet FortiClientWindows vulnerability
A unverified ownership vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.7, FortiClientWindows 7.2 all versions may allow attacker to improper access control via <insert attack vector here>
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Fortinet FortiClientWindowsto a version that resolves this vulnerability.Fixed in 7.4.8 - Upgrade
Upgrade
Fortinet FortiClientWindowsto a version that resolves this vulnerability.Fixed in 8.0.0
Event History
Frequently Asked Questions
What level of access does an attacker need to exploit this issue?
The published vector indicates that an attacker needs high privileges on the affected system. Exploitation is local and does not require user interaction.
Which FortiClientWindows releases are affected?
Affected releases are FortiClientWindows 7.4.0 through 7.4.7 and all versions of the 7.2 release line.
What is the potential impact after exploitation?
The issue can lead to improper access control, with impact to system availability and integrity. The published vector indicates no confidentiality impact.