Vulnerabilities > CVE-2020-9291 - Exposure of Resource to Wrong Sphere vulnerability in Fortinet Forticlient

047910
CVSS 4.6 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
local
low complexity
fortinet
CWE-668

Summary

An Insecure Temporary File vulnerability in FortiClient for Windows 6.2.1 and below may allow a local user to gain elevated privileges via exhausting the pool of temporary file names combined with a symbolic link attack.

Common Weakness Enumeration (CWE)