CVE-2026-84386
Fortinet FortiClient: Schwachstelle ermöglicht Denial of Service
mediumEPSS 0.1 %
Beschreibung
Metriken
Severity
medium
56.05
kein öffentlicher PoC bekannt
5.1
Veröffentlicht
2026-09-09 10:04 UTC
CWE-283
Weakness-Klassen (CWE)
CWE-283Base
Unverified Ownership
The product does not properly verify that a critical resource is owned by the proper entity.
cwe.mitre.org →
Re-Analyse & Statuswechsel
Chronologie der NVD-Audit-Events für diese CVE — Reanalyses, CVSS-Updates, CPE-Diffs.
- CVE Modified2026-09-08 18:21 UTC· 134c704f-9b21-4f2e-91b3-4a467353bcc0
- SSVC: {"id":"CVE-2026-84386","role":"CISA Coordinator","options":[{"exploitation":"none"},{"automatable":"no"},{"technicalI…
- New CVE Received2026-09-08 17:18 UTC· psirt@fortinet.com
- Description: A unverified ownership vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.7, FortiClientWindows 7.2 all versions may allow attacker to improper access control via <insert attack vector here>
- CVSS V3.1: AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H
- CWE: CWE-283
- Affected: New affected value received. <a href="https://github.com/CVEProject/cvelistV5/blob/main/cves/2026/84xxx/CVE-2026-84386.json">CVE-2026-84386</a>
Betroffene Produkte
Aus der Hersteller-/CERT-Meldung extrahierte Produkte und Versionsbereiche. Ein Version-Range wie „<4.14.6“ impliziert die Update-Empfehlung „auf 4.14.6 oder höher aktualisieren“.
Fortinet
FortiClientWindows <7.4.8
IDCVE-2026-84386