VYPR

Forticlientems Cloud

by Fortinet

CVEs (2)

  • CVE-2025-22859MedMay 13, 2025
    risk 0.34cvss 5.3epss 0.01

    A Relative Path Traversal vulnerability [CWE-23] in FortiClientEMS 7.4.0 through 7.4.1 and FortiClientEMS Cloud 7.4.0 through 7.4.1 may allow a remote unauthenticated attacker to perform a limited arbitrary file write on the system via upload requests.

  • CVE-2024-36506LowJan 14, 2025
    risk 0.24cvss 3.7epss 0.01

    An improper verification of source of a communication channel vulnerability [CWE-940] in FortiClientEMS 7.4.0, 7.2.0 through 7.2.4, 7.0 all versions, 6.4 all versions may allow a remote attacker to bypass the trusted host feature via session connection.