ZeroHour

CVE-2021-42754

CVSS 3.1
5.0 medium
EPSS
<1%p36
Published
()
Modified
Description

An improper control of generation of code vulnerability [CWE-94] in FortiClientMacOS versions 7.0.0 and below and 6.4.5 and below may allow an authenticated attacker to hijack the MacOS camera without the user permission via the malicious dylib file.

Vendors
fortinet
Products
forticlient
Weakness
CWE-94
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.