<?xml version="1.0" encoding="UTF-8"?>
<cvrf:cvrfdoc xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema" xmlns:cvrf-common="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/common" xmlns:cvrf="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/cvrf">
    <cvrf:DocumentTitle>Insecure Installation Folder</cvrf:DocumentTitle>
    <cvrf:DocumentType>Fortinet PSIRT Advisories</cvrf:DocumentType>
    <cvrf:DocumentPublisher Type="Vendor">
        <cvrf:ContactDetails>
            Fortinet PSIRT Contact:
            Website: https://fortiguard.fortinet.com/faq/psirt-contact
        </cvrf:ContactDetails>
     </cvrf:DocumentPublisher>
    <cvrf:DocumentTracking>
        <cvrf:Identification>
            <cvrf:ID>FG-IR-22-229</cvrf:ID>
        </cvrf:Identification>
        <cvrf:Status>Final</cvrf:Status>
        <cvrf:Version>1</cvrf:Version>
        <cvrf:RevisionHistory>
            <cvrf:Revision>
                <cvrf:Number>1</cvrf:Number>
                <cvrf:Date>2023-06-12T00:00:00</cvrf:Date>
                <cvrf:Description>Current version</cvrf:Description>
        </cvrf:Revision>
       </cvrf:RevisionHistory>
        <cvrf:InitialReleaseDate>2023-06-12T00:00:00</cvrf:InitialReleaseDate>
        <cvrf:CurrentReleaseDate>2023-06-12T00:00:00</cvrf:CurrentReleaseDate>
    </cvrf:DocumentTracking>
    <cvrf:DocumentNotes>
        <cvrf:Note Title="Summary" Type="Summary" Ordinal="1">
            An incorrect default permissions [CWE-276] vulnerability in FortiClient (Windows) and FortiConverter (Windows) may allow a local authenticated attacker to tamper with files in the installation folder, if FortiClient or FortiConvreter is installed in an insecure folder.
        </cvrf:Note>
        <cvrf:Note Title="Description" Type="General" Ordinal="2">
            None
        </cvrf:Note>
        <cvrf:Note Title="Impact" Type="General" Ordinal="3">
            Improper access control
        </cvrf:Note>
        <cvrf:Note Title="Affected Products" Type="General" Ordinal="4">
            FortiConverter version 7.0.0FortiConverter version 6.2.0 through 6.2.1FortiConverter 6.0 all versionsFortiConverter 5.6 all versions are not affectedFortiClientWindows 7.2 all versions are not affectedFortiClientWindows version 7.0.0 through 7.0.6FortiClientWindows version 6.4.0 through 6.4.8FortiClientWindows 6.2 all versions are not affected
        </cvrf:Note>
        <cvrf:Note Title="Solutions" Type="General" Ordinal="5">
            Please upgrade to FortiClientWindows version 7.0.7 or abovePlease upgrade to FortiClientWindows version 6.4.9 or abovePlease upgrade to FortiConverter version 7.0.1 or abovePlease upgrade to FortiConverter version 6.2.2 or above
        </cvrf:Note>
    </cvrf:DocumentNotes>
    <cvrf:Acknowledgments>
        <cvrf:Acknowledgment>
            <cvrf:Description>Fortinet is pleased to thank Konrad Haase from Control Gap for reporting this vulnerability under responsible disclosure.</cvrf:Description>
        </cvrf:Acknowledgment>
    </cvrf:Acknowledgments>
    <ProductTree>
        <Branch Name="Fortinet" Type="Vendor">
            <Branch Name="FortiClientWindows" Type="Product Name">
                <Branch Name="7.0.6" Type="Product Version">
                    <FullProductName ProductID="FortiClientWindows-7.0.6">FortiClientWindows 7.0.6</FullProductName>
                </Branch>
                <Branch Name="7.0.5" Type="Product Version">
                    <FullProductName ProductID="FortiClientWindows-7.0.5">FortiClientWindows 7.0.5</FullProductName>
                </Branch>
                <Branch Name="7.0.4" Type="Product Version">
                    <FullProductName ProductID="FortiClientWindows-7.0.4">FortiClientWindows 7.0.4</FullProductName>
                </Branch>
                <Branch Name="7.0.3" Type="Product Version">
                    <FullProductName ProductID="FortiClientWindows-7.0.3">FortiClientWindows 7.0.3</FullProductName>
                </Branch>
                <Branch Name="7.0.2" Type="Product Version">
                    <FullProductName ProductID="FortiClientWindows-7.0.2">FortiClientWindows 7.0.2</FullProductName>
                </Branch>
                <Branch Name="7.0.1" Type="Product Version">
                    <FullProductName ProductID="FortiClientWindows-7.0.1">FortiClientWindows 7.0.1</FullProductName>
                </Branch>
                <Branch Name="7.0.0" Type="Product Version">
                    <FullProductName ProductID="FortiClientWindows-7.0.0">FortiClientWindows 7.0.0</FullProductName>
                </Branch>
                <Branch Name="6.4.8" Type="Product Version">
                    <FullProductName ProductID="FortiClientWindows-6.4.8">FortiClientWindows 6.4.8</FullProductName>
                </Branch>
                <Branch Name="6.4.7" Type="Product Version">
                    <FullProductName ProductID="FortiClientWindows-6.4.7">FortiClientWindows 6.4.7</FullProductName>
                </Branch>
                <Branch Name="6.4.6" Type="Product Version">
                    <FullProductName ProductID="FortiClientWindows-6.4.6">FortiClientWindows 6.4.6</FullProductName>
                </Branch>
                <Branch Name="6.4.5" Type="Product Version">
                    <FullProductName ProductID="FortiClientWindows-6.4.5">FortiClientWindows 6.4.5</FullProductName>
                </Branch>
                <Branch Name="6.4.4" Type="Product Version">
                    <FullProductName ProductID="FortiClientWindows-6.4.4">FortiClientWindows 6.4.4</FullProductName>
                </Branch>
                <Branch Name="6.4.3" Type="Product Version">
                    <FullProductName ProductID="FortiClientWindows-6.4.3">FortiClientWindows 6.4.3</FullProductName>
                </Branch>
                <Branch Name="6.4.2" Type="Product Version">
                    <FullProductName ProductID="FortiClientWindows-6.4.2">FortiClientWindows 6.4.2</FullProductName>
                </Branch>
                <Branch Name="6.4.1" Type="Product Version">
                    <FullProductName ProductID="FortiClientWindows-6.4.1">FortiClientWindows 6.4.1</FullProductName>
                </Branch>
                <Branch Name="6.4.0" Type="Product Version">
                    <FullProductName ProductID="FortiClientWindows-6.4.0">FortiClientWindows 6.4.0</FullProductName>
                </Branch>
            </Branch>
            <Branch Name="FortiConverter" Type="Product Name">
                <Branch Name="7.0.0" Type="Product Version">
                    <FullProductName ProductID="FortiConverter-7.0.0">FortiConverter 7.0.0</FullProductName>
                </Branch>
                <Branch Name="6.2.1" Type="Product Version">
                    <FullProductName ProductID="FortiConverter-6.2.1">FortiConverter 6.2.1</FullProductName>
                </Branch>
                <Branch Name="6.2.0" Type="Product Version">
                    <FullProductName ProductID="FortiConverter-6.2.0">FortiConverter 6.2.0</FullProductName>
                </Branch>
                <Branch Name="6.0.3" Type="Product Version">
                    <FullProductName ProductID="FortiConverter-6.0.3">FortiConverter 6.0.3</FullProductName>
                </Branch>
                <Branch Name="6.0.2" Type="Product Version">
                    <FullProductName ProductID="FortiConverter-6.0.2">FortiConverter 6.0.2</FullProductName>
                </Branch>
                <Branch Name="6.0.1" Type="Product Version">
                    <FullProductName ProductID="FortiConverter-6.0.1">FortiConverter 6.0.1</FullProductName>
                </Branch>
                <Branch Name="6.0.0" Type="Product Version">
                    <FullProductName ProductID="FortiConverter-6.0.0">FortiConverter 6.0.0</FullProductName>
                </Branch>
            </Branch>
        </Branch>
    </ProductTree>
    <Vulnerability Ordinal="1">
        <Title>Insecure Installation Folder</Title>
        <cvrf:CVE>CVE-2022-33877</cvrf:CVE>
        <ProductStatuses>
            <Status Type="Known Affected">
                <ProductID>FortiClientWindows-7.0.6</ProductID>
                <ProductID>FortiClientWindows-7.0.5</ProductID>
                <ProductID>FortiClientWindows-7.0.4</ProductID>
                <ProductID>FortiClientWindows-7.0.3</ProductID>
                <ProductID>FortiClientWindows-7.0.2</ProductID>
                <ProductID>FortiClientWindows-7.0.1</ProductID>
                <ProductID>FortiClientWindows-7.0.0</ProductID>
                <ProductID>FortiClientWindows-6.4.8</ProductID>
                <ProductID>FortiClientWindows-6.4.7</ProductID>
                <ProductID>FortiClientWindows-6.4.6</ProductID>
                <ProductID>FortiClientWindows-6.4.5</ProductID>
                <ProductID>FortiClientWindows-6.4.4</ProductID>
                <ProductID>FortiClientWindows-6.4.3</ProductID>
                <ProductID>FortiClientWindows-6.4.2</ProductID>
                <ProductID>FortiClientWindows-6.4.1</ProductID>
                <ProductID>FortiClientWindows-6.4.0</ProductID>
                <ProductID>FortiConverter-7.0.0</ProductID>
                <ProductID>FortiConverter-6.2.1</ProductID>
                <ProductID>FortiConverter-6.2.0</ProductID>
                <ProductID>FortiConverter-6.0.3</ProductID>
                <ProductID>FortiConverter-6.0.2</ProductID>
                <ProductID>FortiConverter-6.0.1</ProductID>
                <ProductID>FortiConverter-6.0.0</ProductID>
            </Status>
        </ProductStatuses>
        <CVSSScoreSets>
            <ScoreSetV3>
                <BaseScoreV3>6.8</BaseScoreV3>
                <VectorV3>CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:F/RL:X/RC:X</VectorV3>
            </ScoreSetV3>
        </CVSSScoreSets>
        <References Type="Self">
            <Reference>
                <URL>https://fortiguard.fortinet.com/psirt/FG-IR-22-229</URL>
                <Description>Insecure Installation Folder</Description>
            </Reference>Reference>
        </References>
    </Vulnerability>
</cvrf:cvrfdoc>