High severity8.1NVD Advisory· Published Aug 12, 2026· Updated Sep 8, 2026
CVE-2026-70465
CVE-2026-70465
Description
A buffer copy without checking size of input ('classic buffer overflow') vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.3, FortiClientWindows 7.2.0 through 7.2.11 may allow an unauthenticated attacker in a position to alter or craft DNS responses to the targeted host to execute arbitrary code via malicious packets.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: 7.4.0-7.4.3, 7.2.0-7.2.11
Patches
Vulnerability mechanics
References
1- fortiguard.fortinet.com/psirt/FG-IR-26-156nvdVendor AdvisoryMitigation
News mentions
4- ⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and MoreThe Hacker News · Aug 17, 2026
- Cyber Security Weekly Newsletter – Outlook RCE, Palo Alto, Cisco 0-day and Windows 0-Day Flaws +20 StoriesCyber Security News · Aug 16, 2026
- Fortinet Patches Multiple Authentication Vulnerabilities in FortiWeb, FortiManager, and FortiClientCyber Security News · Aug 13, 2026
- Fortinet Patches Authentication Flaws in FortiWeb and FortiManagerSecurityWeek · Aug 13, 2026