CVE-2015-5737
FortiClient Antivirus Information Exposure / Access Control
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The (1) mdare64_48.sys, (2) mdare32_48.sys, (3) mdare32_52.sys, (4) mdare64_52.sys, and (5) Fortishield.sys drivers in Fortinet FortiClient before 5.2.4 do not properly restrict access to the API for management of processes and the Windows registry, which allows local users to obtain a privileged handle to a PID and possibly have unspecified other impact, as demonstrated by a 0x2220c8 ioctl call.
Vulnerabilidad en los drivers (1) mdare64_48.sys, (2) mdare32_48.sys, (3) mdare32_52.sys, (4) mdare64_52.sys y (5) Fortishield.sys en Fortinet FortiClient en versiones anteriores a 5.2.4, no restringe adecuadamente el acceso a la API para la gestiĆ³n de procesos y el registro de Windows, lo que permite a usuarios locales obtener un identificador con privilegios a un PID y posiblemente tener otro impacto no especificado, como se demuestra por una llamada ioctl en 0x2220c8.
FortiClient drivers are prone to multiple attacks and expose a wide surface that allows users to easily get SYSTEM privileges.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2015-08-04 CVE Reserved
- 2015-09-02 CVE Published
- 2024-08-06 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-264: Permissions, Privileges, and Access Controls
CAPEC
References (7)
URL | Tag | Source |
---|---|---|
http://fortiguard.com/advisory/mulitple-vulnerabilities-in-forticlient | X_refsource_confirm | |
http://packetstormsecurity.com/files/133398/FortiClient-Antivirus-Information-Exposure-Access-Control.html | X_refsource_misc |
|
http://seclists.org/fulldisclosure/2015/Sep/0 | Mailing List |
|
http://www.coresecurity.com/advisories/forticlient-antivirus-multiple-vulnerabilities | X_refsource_misc | |
http://www.securityfocus.com/archive/1/536369/100/0/threaded | Mailing List | |
http://www.securitytracker.com/id/1033439 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.fortiguard.com/advisory/mulitple-vulnerabilities-in-forticlient | 2018-10-09 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Fortinet Search vendor "Fortinet" | Forticlient Search vendor "Fortinet" for product "Forticlient" | <= 5.2.3 Search vendor "Fortinet" for product "Forticlient" and version " <= 5.2.3" | - |
Affected
|