[FortiSIEM]Unquoted Service Path Exploit in FortiSIEMWindowsAgent

Summary

An unquoted service path vulnerability in the FortiSIEMWindowsAgent component may allow an attacker to gain elevated privileges via the AoWinAgt executable service path.

Affected Products

FortiSIEMWindowsAgent version 3.1.2 and below.

Solutions

Please upgrade to FortiSIEMWindowsAgent version 3.2.0 or above.

Acknowledgement

Fortinet is pleased to thank Huw Pigott from Shearwater, a CyberCX company, for reporting this vulnerability under responsible disclosure.

Timeline

2020-06-03: Initial publication