Fortinet Update
3127Warning Date
Severity Level
Warning Number
Target Sector
10 November, 2019
● Medium
2019-609
All
Description:
Fortinet has released security update to address two vulnerabilities in the following products:
- FortiExtender 4.1.0 to 4.1.1, 4.0.0 and below
- FortiClient for Mac OS version 6.2.0 and below
- FortiClient for Mac OS version 6.0.7 and below
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Running arbitrary system level commands via specially crafted "execute date" commands.
- Read sensitive information.
Best practice and Recommendations:
The CERT team encourages users to update the affected products and to review Fortinet security advisory: https://fortiguard.com/psirt?date=10-2019