Unrated severityNVD Advisory· Published Mar 10, 2026· Updated Mar 11, 2026
CVE-2026-24018
CVE-2026-24018
Description
A UNIX symbolic link (Symlink) following vulnerability in Fortinet FortiClientLinux 7.4.0 through 7.4.4, FortiClientLinux 7.2.2 through 7.2.12 may allow a local and unprivileged user to escalate their privileges to root.
Affected products
2- Fortinet/FortiClientLinuxv5cpe:2.3:a:fortinet:forticlientlinux:7.4.4:*:*:*:*:*:*:*Range: 7.4.0
- Range: >=7.2.2 <=7.2.12, >=7.4.0 <=7.4.4
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
1- ZDI-26-186: Fortinet FortiClient Link Following Local Privilege Escalation VulnerabilityZero Day Initiative · Mar 10, 2026