CVE-2023-37939
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiClient for Windows 7.2.0, 7.0 all versions, 6.4 all versions, 6.2 all versions, Linux 7.2.0, 7.0 all versions, 6.4 all versions, 6.2 all versions and Mac 7.2.0 through 7.2.1, 7.0 all versions, 6.4 all versions, 6.2 all versions, may allow a local authenticated attacker with no Administrative privileges to retrieve the list of files or folders excluded from malware scanning.
Una exposición de información confidencial a una vulnerabilidad de actor no autorizado [CWE-200] en FortiClient para Windows 7.2.0, 7.0 todas las versiones, 6.4 todas las versiones, 6.2 todas las versiones, Linux 7.2.0, 7.0 todas las versiones, 6.4 todas las versiones, 6.2 todas y Mac 7.2.0 a 7.2.1, 7.0 todas las versiones, 6.4 todas las versiones, 6.2 todas las versiones, pueden permitir que un atacante local autenticado sin privilegios administrativos recupere la lista de archivos o carpetas excluidas del análisis de malware.
CVSS Scores
SSVC
- Decision:Track
Timeline
- 2023-07-11 CVE Reserved
- 2023-10-10 CVE Published
- 2023-10-11 EPSS Updated
- 2024-09-18 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://fortiguard.com/psirt/FG-IR-22-235 | 2023-11-07 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Fortinet Search vendor "Fortinet" | Forticlient Search vendor "Fortinet" for product "Forticlient" | >= 6.2.0 <= 6.2.9 Search vendor "Fortinet" for product "Forticlient" and version " >= 6.2.0 <= 6.2.9" | linux |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | Forticlient Search vendor "Fortinet" for product "Forticlient" | >= 6.2.0 <= 6.2.9 Search vendor "Fortinet" for product "Forticlient" and version " >= 6.2.0 <= 6.2.9" | macos |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | Forticlient Search vendor "Fortinet" for product "Forticlient" | >= 6.2.0 <= 6.2.9 Search vendor "Fortinet" for product "Forticlient" and version " >= 6.2.0 <= 6.2.9" | windows |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | Forticlient Search vendor "Fortinet" for product "Forticlient" | >= 6.4.0 <= 6.4.9 Search vendor "Fortinet" for product "Forticlient" and version " >= 6.4.0 <= 6.4.9" | linux |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | Forticlient Search vendor "Fortinet" for product "Forticlient" | >= 6.4.0 <= 6.4.10 Search vendor "Fortinet" for product "Forticlient" and version " >= 6.4.0 <= 6.4.10" | macos |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | Forticlient Search vendor "Fortinet" for product "Forticlient" | >= 6.4.0 <= 6.4.10 Search vendor "Fortinet" for product "Forticlient" and version " >= 6.4.0 <= 6.4.10" | windows |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | Forticlient Search vendor "Fortinet" for product "Forticlient" | >= 7.0.0 <= 7.0.9 Search vendor "Fortinet" for product "Forticlient" and version " >= 7.0.0 <= 7.0.9" | linux |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | Forticlient Search vendor "Fortinet" for product "Forticlient" | >= 7.0.0 <= 7.0.9 Search vendor "Fortinet" for product "Forticlient" and version " >= 7.0.0 <= 7.0.9" | macos |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | Forticlient Search vendor "Fortinet" for product "Forticlient" | >= 7.0.0 <= 7.0.9 Search vendor "Fortinet" for product "Forticlient" and version " >= 7.0.0 <= 7.0.9" | windows |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | Forticlient Search vendor "Fortinet" for product "Forticlient" | 7.2.0 Search vendor "Fortinet" for product "Forticlient" and version "7.2.0" | linux |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | Forticlient Search vendor "Fortinet" for product "Forticlient" | 7.2.0 Search vendor "Fortinet" for product "Forticlient" and version "7.2.0" | macos |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | Forticlient Search vendor "Fortinet" for product "Forticlient" | 7.2.0 Search vendor "Fortinet" for product "Forticlient" and version "7.2.0" | windows |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | Forticlient Search vendor "Fortinet" for product "Forticlient" | 7.2.1 Search vendor "Fortinet" for product "Forticlient" and version "7.2.1" | macos |
Affected
|