Government of the Republic of Trinidad and Tobago
gov.tt

TT-CSIRT-401.11.04.22: FortiClient Vulnerabilities

TT-CSIRT-401.11.04.22: FortiClient Vulnerabilities

Fortinet has released security updates to address multiple vulnerabilities in FortiClient for Windows and Linux. An attacker could exploit some of these vulnerabilities to take control of an affected system or access sensitive information.

TT-CSIRT encourages users/administrators to review the following releases from Fortinet and apply the necessary updates:

  1. FortiClient (Windows) – Privilege Escalation
  2. FortiClient (Linux) – Improper Directories Permissions
  3. FortiClient (Linux) – external access to confighandler webserver