Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Format string vulnerability in Fortinet FortiClient 3.0.614, and possibly earlier, allows local users to execute arbitrary code via format string specifiers in the VPN connection name.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Fortinet FortiClient VPN连接名称本地格式串漏洞
Vulnerability Description
Fortinet FortiClient是美国飞塔(Fortinet)公司的一套为终端提供安全的软件解决方案。它提供IPsec和SSL 加密、广域网优化、终端合规和双因子认证等功能。 FortiClient的VPN功能中存在本地格式串漏洞。如果用户在VPN连接名称中指定了特制的格式串标识符并初始化了这个连接的话,就可以触发这个漏洞,导致以System权限级别读写任意内存。
CVSS Information
N/A
Vulnerability Type
N/A