CVE-2015-4077

Fortinet Forticlient < 5.2.3 - Information Disclosure

Title source: rule

Description

The (1) mdare64_48.sys, (2) mdare32_48.sys, (3) mdare32_52.sys, and (4) mdare64_52.sys drivers in Fortinet FortiClient before 5.2.4 allow local users to read arbitrary kernel memory via a 0x22608C ioctl call.

Exploits (2)

exploitdb WORKING POC VERIFIED
by sickness & mschenk · c++localwindows_x86-64
https://www.exploit-db.com/exploits/45149
nomisec WORKING POC 2 stars
by ApexPredator-InfoSec · poc
https://github.com/ApexPredator-InfoSec/forti_shield

Scores

EPSS 0.0021
EPSS Percentile 43.6%

Details

CWE
CWE-200
Status published
Products (1)
fortinet/forticlient < 5.2.3
Published Sep 03, 2015
Tracked Since Feb 18, 2026