FG-IR-20-040: FortiClient for Windows Insecure Temporary File vulnerability
An Insecure Temporary File (CWE-377) vulnerability in FortiClient for Windows may allow a local user to gain elevated privileges via exhausting the pool of temporary file names combined with a symbolic link attack.
Affected Software
Event History
Frequently Asked Questions
What is the severity of FG-IR-20-040?
The severity of FG-IR-20-040 is considered high due to the potential for local users to gain elevated privileges.
How do I fix FG-IR-20-040?
To fix FG-IR-20-040, ensure you apply the latest security updates provided by Fortinet for FortiClient.
Who is affected by FG-IR-20-040?
FG-IR-20-040 affects users of FortiClient for Windows, specifically those who may be exposed to local user attacks.
What type of vulnerability is FG-IR-20-040?
FG-IR-20-040 is classified as an Insecure Temporary File vulnerability under CWE-377.
Can FG-IR-20-040 lead to data breaches?
Yes, if exploited, FG-IR-20-040 could potentially lead to data breaches due to elevated privileges obtained by local users.