CVE-2024-36506

3.7LOW

An improper verification of source of a communication channel vulnerability [CWE-940] in FortiClientEMS 7.4.0, 7.2.0 through 7.2.4, 7.0 all versions, 6.4 all versions may allow a remote attacker to by

Published: 1/14/2025Updated: 1/31/2025

Description

An improper verification of source of a communication channel vulnerability [CWE-940] in FortiClientEMS 7.4.0, 7.2.0 through 7.2.4, 7.0 all versions, 6.4 all versions may allow a remote attacker to bypass the trusted host feature via session connection.

AI AnalysisPowered by AI

Affected Products

fortinetforticlientems
fortinetforticlientems
7.4.0
fortinetforticlientems_cloud
fortinetforticlientems_cloud
7.4.0

References