Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Please upgrade to FortiClientMac version 7.4.3 or above Please upgrade to FortiClientMac version 7.2.9 or above
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-16290 | An Incorrect Authorization vulnerability [CWE-863] in FortiClient Mac 7.4.0 through 7.4.2, 7.2.0 through 7.2.8, 7.0.0 through 7.0.14 may allow a local attacker to escalate privileges via crafted XPC messages. |
| Link | Providers |
|---|---|
| https://fortiguard.fortinet.com/psirt/FG-IR-25-016 |
|
Wed, 04 Jun 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Fortinet
Fortinet forticlient |
|
| CPEs | cpe:2.3:a:fortinet:forticlient:*:*:*:*:*:macos:*:* | |
| Vendors & Products |
Fortinet
Fortinet forticlient |
Wed, 28 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 28 May 2025 08:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An Incorrect Authorization vulnerability [CWE-863] in FortiClient Mac 7.4.0 through 7.4.2, 7.2.0 through 7.2.8, 7.0.0 through 7.0.14 may allow a local attacker to escalate privileges via crafted XPC messages. | |
| Weaknesses | CWE-863 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2026-02-26T18:27:52.267Z
Reserved: 2025-02-05T13:31:18.866Z
Link: CVE-2025-25251
Updated: 2025-05-28T14:28:44.092Z
Status : Analyzed
Published: 2025-05-28T08:15:21.387
Modified: 2025-06-04T15:37:46.183
Link: CVE-2025-25251
No data.
OpenCVE Enrichment
No data.
EUVD