EIP-2026-119525
PRE-CVEFortinet FortiClient 5.2.3 (Windows 10 x86) - Local Privilege Escalation
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-119525. PoCs published by sickness.
AI-analyzed exploit summary This is a functional exploit for a local privilege escalation vulnerability in FortiShield.sys (5.2.3.633) on Windows 10 x86 (1703/1709). It leverages a vulnerable IOCTL handler to achieve arbitrary kernel memory manipulation, bypasses SMEP via a PTE manipulation gadget, and executes a token-stealing shellcode to escalate privileges.
Description
Fortinet FortiClient 5.2.3 (Windows 10 x86) - Local Privilege Escalation
Exploits (1)
This is a functional exploit for a local privilege escalation vulnerability in FortiShield.sys (5.2.3.633) on Windows 10 x86 (1703/1709). It leverages a vulnerable IOCTL handler to achieve arbitrary kernel memory manipulation, bypasses SMEP via a PTE manipulation gadget, and executes a token-stealing shellcode to escalate privileges.