Index of FCT installation directory publicly accessible

Summary

An Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability [CWE-497] in FortiClientWindows may allow an unauthorized remote attacker to view application information via navigation to a hosted webpage, if Windows is configured to accept incoming connections to port 8053 (non-default setup)

Version Affected Solution
FortiClientWindows 7.4 Not affected Not Applicable
FortiClientWindows 7.2 7.2.0 through 7.2.1 Upgrade to 7.2.2 or above
FortiClientWindows 7.0 7.0.13 through 7.0.14 Migrate to a fixed release

Acknowledgement

Fortinet is pleased to thank Víctor A. Morales from GM Sectec, Inc. for reporting this vulnerability under responsible disclosure.

Timeline

2025-05-13: Initial publication

References

  • By default Windows will deny incoming requests on port 8053, normally making the information inaccessible to a remote user. However, EDR solutions will nonetheless typically issue an alert.