CVE-2009-1262

N/A Unknown
Published: April 07, 2009 Modified: April 23, 2026
View on NVD

Description

Format string vulnerability in Fortinet FortiClient 3.0.614, and possibly earlier, allows local users to execute arbitrary code via format string specifiers in the VPN connection name.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://osvdb.org/53266
Source: cve@mitre.org
http://secunia.com/advisories/34524
Source: cve@mitre.org
Vendor Advisory
http://www.vupen.com/english/advisories/2009/0941
Source: cve@mitre.org
Vendor Advisory
http://osvdb.org/53266
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/34524
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://www.layereddefense.com/FortiClient02Apr.html
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/502354/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/502602/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/34343
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securitytracker.com/id?1021966
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2009/0941
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/49633
Source: af854a3a-2127-422b-91ae-364da2661108

20 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
0.1%
23th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

fortinet