CVE Published: 15/03/2020 |
CVE Updated: 25/10/2024 |
CVE Year: 2020 Source: fortinet |
Vendor: Fortinet |
Product: Fortinet FortiClient for Windows Status : PUBLISHED
CVE-2020-9290 Description
An Unsafe Search Path vulnerability in FortiClient for Windows online installer 6.2.3 and below may allow a local attacker with control over the directory in which FortiClientOnlineInstaller.exe and FortiClientVPNOnlineInstaller.exe resides to execute arbitrary code on the system via uploading malicious Filter Library DLL files in that directory.