CVE-2024-31492

CVSS V2 None CVSS V3 None
Description
An external control of file name or path vulnerability [CWE-73] in FortiClientMac version 7.2.3 and below, version 7.0.10 and below installer may allow a local attacker to execute arbitrary code or commands via writing a malicious configuration file in /tmp before starting the installation process.
Overview
  • CVE ID
  • CVE-2024-31492
  • Assigner
  • fortinet
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-04-10T13:24:56.859Z
  • Last Modified Date
  • 2024-04-10T13:24:56.859Z
References
Reference URL Reference Tags
https://fortiguard.com/psirt/FG-IR-23-345
History
Created Old Value New Value Data Type Notes
2024-06-25 22:35:55 Added to TrackCVE