PoC Index

CVE-2015-5736

HIGH 7.2EPSS 2.0%

The Fortishield.sys driver in Fortinet FortiClient before 5.2.4 allows local users to execute arbitrary code with kernel privileges by setting the callback function in a (1) 0x220024 or (2) 0x220028 ioctl call.

CVSS v2.0
7.2 HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
EPSS
2.03% chance of exploitation in the next 30 days, 80th percentile
Published
2015-09-03
Updated
2024-08-06

Proof-of-concept exploits (1)

ExploitDB entries (3)

References

Related