PT-2026-7275 · Fortinet · Forticlientwindows

Published

2026-02-10

·

Updated

2026-02-20

·

CVE-2025-62676

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions Fortinet FortiClientWindows versions 7.0.0 through 7.4.4 Fortinet FortiClientWindows versions 7.2.0 through 7.2.12
Description A flaw exists in Fortinet FortiClientWindows that allows a local, low-privilege attacker to perform arbitrary file writes with elevated permissions. This is due to an improper link resolution before file access, specifically a Time-of-Check-to-Time-of-Use (TOCTOU) condition. The issue is triggered by crafted named pipe messages.
Recommendations FortiClientWindows versions 7.0.0 through 7.0.9 should be updated. FortiClientWindows versions 7.1.0 through 7.1.9 should be updated. FortiClientWindows versions 7.2.0 through 7.2.12 should be updated. FortiClientWindows versions 7.3.0 through 7.3.9 should be updated. FortiClientWindows versions 7.4.0 through 7.4.4 should be updated.

Fix

LPE

Link Following

Weakness Enumeration

Related Identifiers

BDU:2026-02560
CVE-2025-62676
ZDI-26-115

Affected Products

Forticlientwindows