An improper isolation or compartmentalization vulnerability [CWE-653] in FortiClientMac version 7.4.2 and below, version 7.2.8 and below, 7.0 all versions and FortiVoiceUCDesktop 3.0 all versions desktop application may allow an authenticated attacker to inject code via Electron environment variables.
References
Link | Resource |
---|---|
https://fortiguard.fortinet.com/psirt/FG-IR-24-025 |
Configurations
No configuration.
History
13 May 2025, 15:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-13 15:15
Updated : 2025-05-13 19:35
NVD link : CVE-2024-35281
Mitre link : CVE-2024-35281
CVE.ORG link : CVE-2024-35281
JSON object : View
Products Affected
No product.
CWE
CWE-653
Insufficient Compartmentalization