PT-2017-13293 · Fortinet · Forticlient For Mac Osx+2
Publicado
2017-12-15
·
Atualizado
2020-05-11
·
CVE-2017-14184
CVSS v3.1
8.8
Alta
| Vetor | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
FortiClient for Windows versions 5.6.0 and below
FortiClient for Mac OSX versions 5.6.0 and below
FortiClient SSLVPN Client for Linux versions 4.4.2334 and below
Description
An Information Disclosure issue allows regular users to see each other's VPN authentication credentials due to improperly secured storage locations.
Recommendations
For FortiClient for Windows versions 5.6.0 and below, update to a version above 5.6.0 to resolve the issue.
For FortiClient for Mac OSX versions 5.6.0 and below, update to a version above 5.6.0 to resolve the issue.
For FortiClient SSLVPN Client for Linux versions 4.4.2334 and below, update to a version above 4.4.2334 to resolve the issue.
Correção
Information Disclosure
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Forticlient Sslvpn Client For Linux
Forticlient For Mac Osx
Forticlientwindows