Index of FCT installation directory publicly accessible
Summary
An Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability [CWE-497] in FortiClientWindows may allow an unauthorized remote attacker to view application information via navigation to a hosted webpage, if Windows is configured to accept incoming connections to port 8053 (non-default setup)
| Version | Affected | Solution |
|---|---|---|
| FortiClientWindows 7.4 | Not affected | Not Applicable |
| FortiClientWindows 7.2 | 7.2.0 through 7.2.1 | Upgrade to 7.2.2 or above |
| FortiClientWindows 7.0 | 7.0.13 through 7.0.14 | Migrate to a fixed release |
Acknowledgement
Fortinet is pleased to thank Víctor A. Morales from GM Sectec, Inc. for reporting this vulnerability under responsible disclosure.Timeline
2025-05-13: Initial publicationReferences
- By default Windows will deny incoming requests on port 8053, normally making the information inaccessible to a remote user. However, EDR solutions will nonetheless typically issue an alert.