An improper control of generation of code vulnerability [CWE-94] in FortiClientMacOS versions 7.0.0 and below and 6.4.5 and below may allow an authenticated attacker to hijack the MacOS camera without the user permission via the malicious dylib file.
2021-11-02T19:15:08.223
2024-11-21T06:28:06.153
Modified
CVSSv3.1: 3.2 (LOW)
AV:N/AC:M/Au:S/C:N/I:P/A:N
6.8
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | fortinet | forticlient | ≤ 6.4.5 | Yes |
Application | fortinet | forticlient | 7.0.0 | Yes |