HIGH
An Uncontrolled Search Path Element vulnerability [CWE-427] in FortiClient Windows 7.4.0 through 7.4.3, 7.2.0 through 7.2.11, 7.0 all versions may allow a local low privileged user to perform a DLL hijacking attack via placing a malicious DLL to the FortiClient Online Installer installation folder
Published Oct 14, 2025
7.3
HIGHCVSS 3.1
EPSS 0.18%
Description
Affected products
Remediation
Metrics
References (1)
Change history (0)
No recorded changes yet.