Описание
An Improper Control of Generation of Code ('Code Injection') vulnerability [CWE-94] in FortiClientMac 7.4.0 through 7.4.3, 7.2.1 through 7.2.8 may allow an unauthenticated attacker to execute arbitrary code on the victim's host via tricking the user into visiting a malicious website.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Одно из
EPSS
5.8 Medium
CVSS3
7.1 High
CVSS3
Дефекты
Связанные уязвимости
An Improper Control of Generation of Code ('Code Injection') vulnerability [CWE-94] in FortiClientMac 7.4.0 through 7.4.3, 7.2.1 through 7.2.8 may allow an unauthenticated attacker to execute arbitrary code on the victim's host via tricking the user into visiting a malicious website.
Уязвимость графического интерфейса пользователя (GUI) средства защиты FortiClient for MAC, позволяющая нарушителю выполнить произвольный код
EPSS
5.8 Medium
CVSS3
7.1 High
CVSS3