PT-2025-47357 · Fortinet · Forticlientwindows

Publicado

2025-11-18

·

Atualizado

2025-11-19

·

CVE-2025-54660

CVSS v3.1

5.5

Média

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Fortinet FortiClientWindows versions 7.0.0 through 7.4.3 Fortinet FortiClientWindows version 7.2.0 through 7.2.10
Description A debug code issue exists in FortiClientWindows that could allow a local attacker to execute the application step by step and obtain the stored VPN user password. The issue involves leftover debug code that exposes VPN credentials.
Recommendations FortiClientWindows versions 7.0.0 through 7.4.3 should be updated. FortiClientWindows versions 7.2.0 through 7.2.10 should be updated.

Correção

LPE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2025-14870
CVE-2025-54660

Produtos afetados

Forticlientwindows