ZeroHour

CVE-2024-36513

CVSS 3.1
8.8 high
EPSS
<1%p12
Published
()
Modified
Description

A privilege context switching error vulnerability [CWE-270] in FortiClient Windows version 7.2.4 and below, version 7.0.12 and below, 6.4 all versions may allow an authenticated user to escalate their privileges via lua auto patch scripts.

Vendors
fortinet
Products
forticlient
Weakness
CWE-270
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.