A download of code without Integrity check vulnerability [CWE-494] in FortiClientMac version 7.0.0 through 7.0.7, 6.4 all versions, 6.2 all versions, 6.0 all versions, 5.6 all versions, 5.4 all versions, 5.2 all versions, 5.0 all versions and 4.0 all versions may allow a local attacker to escalate their privileges via modifying the installer upon upgrade.
References
Link | Resource |
---|---|
https://fortiguard.com/psirt/FG-IR-22-481 | Vendor Advisory |
https://fortiguard.com/psirt/FG-IR-22-481 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 07:45
Type | Values Removed | Values Added |
---|---|---|
References | () https://fortiguard.com/psirt/FG-IR-22-481 - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.3 |
Information
Published : 2023-04-11 17:15
Updated : 2024-11-21 07:45
NVD link : CVE-2023-22635
Mitre link : CVE-2023-22635
CVE.ORG link : CVE-2023-22635
JSON object : View
Products Affected
fortinet
- forticlient
CWE
CWE-494
Download of Code Without Integrity Check