Fortinet FortiClient Windows Improper Link Resolution Vulnerability Allowing Arbitrary File Write

Vulnerability

A vulnerability allowing improper link resolution before file access has been identified in Fortinet FortiClient for Windows, specifically in versions 7.4.0 through 7.4.4, 7.2.0 through 7.2.12, and all versions of 7.0. This vulnerability may enable a local low-privilege attacker to perform arbitrary file writes with elevated permissions by sending crafted messages through named pipes.

Impact

Exploitation of this vulnerability could lead to unauthorized file writes with elevated permissions, potentially allowing for further exploitation or manipulation of the system.

Remediation

Users can upgrade to FortiClient Windows 7.4.5 or above, FortiClient Windows 7.2.13 or above, or migrate to a fixed release if using FortiClient Windows 7.0.

Added: Feb 10, 2026, 4:25 PM
Updated: Feb 10, 2026, 4:25 PM

Vulnerability Rating

Custom Algorithm
spread
6.6
impact
2.5
exploitability
2.9
remediation
7.7
relevance
2.9
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.