High severity7.8NVD Advisory· Published Mar 15, 2020· Updated Jun 17, 2026
CVE-2020-9287
CVE-2020-9287
Description
An Unsafe Search Path vulnerability in FortiClient EMS online installer 6.2.1 and below may allow a local attacker with control over the directory in which FortiClientEMSOnlineInstaller.exe resides to execute arbitrary code on the system via uploading malicious Filter Library DLL files in that directory.
Affected products
3- cpe:2.3:a:fortinet:forticlient_emergency_management_server:*:*:*:*:*:*:*:*Range: <=6.2.1
- Range: <=6.2.1
- Range: 6.2.1 and below
Patches
Vulnerability mechanics
References
1- fortiguard.com/psirt/FG-IR-19-060nvdVendor Advisory
News mentions
0No linked articles in our index yet.