VYPR
Medium severity4.8NVD Advisory· Published Jun 10, 2025· Updated Jun 17, 2026

CVE-2024-32119

CVE-2024-32119

Description

An improper authentication vulnerability [CWE-287] in Fortinet FortiClientEMS version 7.4.0 and before 7.2.4 allows an unauthenticated attacker with the knowledge of the targeted user's FCTUID and VDOM to perform operations such as uploading or tagging on behalf of the targeted user via specially crafted TCP requests.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • cpe:2.3:a:fortinet:forticlientems:*:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:fortinet:forticlientems:*:*:*:*:*:*:*:*range: >=6.2.0,<=6.2.9
    • cpe:2.3:a:fortinet:forticlientems:7.4.0:*:*:*:*:*:*:*
    • (no CPE)range: <=7.4.0, <7.2.4
    • (no CPE)range: 7.4.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.