Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Use of a hard-coded cryptographic key to encrypt security sensitive data in local storage and configuration in FortiClient for Windows prior to 6.4.0 may allow an attacker with access to the local storage or the configuration backup file to decrypt the sensitive data via knowledge of the hard-coded key.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Fortinet FortiClient 信任管理问题漏洞
Vulnerability Description
Fortinet FortiClient是美国飞塔(Fortinet)公司的一套移动终端安全解决方案。该方案与FortiGate防火墙设备连接时可提供IPsec和SSL加密、广域网优化、终端合规和双因子认证等功能。 基于Windows平台的Fortinet FortiClient 6.4.0之前版本中存在安全漏洞,该漏洞源于程序使用了硬编码加密密钥。攻击者可利用该漏洞解密敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A