CVE-2019-17658 Vulnerability Details

  /     /     /  

CVE-2019-17658 Metadata Quick Info

CVE Published: 12/03/2020 | CVE Updated: 25/10/2024 | CVE Year: 2019
Source: fortinet | Vendor: Fortinet | Product: Fortinet FortiClientWindows
Status : PUBLISHED

CVE-2019-17658 Description

An unquoted service path vulnerability in the FortiClient FortiTray component of FortiClientWindows v6.2.2 and prior allow an attacker to gain elevated privileges via the FortiClientConsole executable service path.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: Escalation of privilege
Source: Fortinet

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).