logo

Fortinet FortiClient EMS vulnerability: CVE-2026-35616

ID: a95c13a8-2a09-59b8-99cc-65a6326bc5db

STIX ID: report--a95c13a8-2a09-59b8-99cc-65a6326bc5db

Feed Name: runZero Blog

Threat Score
90/100

Date Published: 2026-04-04

Date Updated: 2026-04-29

Author: Matthew Kienow

...
...

Fortinet FortiClient Endpoint Management Server contains a critical API authentication/authorization bypass (CVE-2026-35616, CVSS 9.1) affecting FortiClientEMS 7.4.5–7.4.6; Fortinet confirms active exploitation in the wild. Successful exploitation may allow remote, unauthenticated attackers to execute unauthorized code or commands; vendors recommend upgrading to 7.4.7 or applying the listed hotfixes (7.4.5.2111, 7.4.6.2170).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.