CVE-2019-16155
Last modified
CVE-2019-16155 is a high-severity vulnerability rated 7.1/10 on the CVSS scale. A privilege escalation vulnerability in FortiClient for Linux 6.2.1 and below may allow a user with low privilege to overwrite system files as root with arbitrary content through system backup file via specially crafted "BackupConfig" type IPC client requests to the fctsched process. Further more, FortiClient for Linux 6.2.2 and below allow low privilege user write the system backup file under root privilege through GUI thus can cause root system file overwrite.. EPSS estimates a 0.44% chance of exploitation in the next 30 days.
Description
A privilege escalation vulnerability in FortiClient for Linux 6.2.1 and below may allow a user with low privilege to overwrite system files as root with arbitrary content through system backup file via specially crafted "BackupConfig" type IPC client requests to the fctsched process. Further more, FortiClient for Linux 6.2.2 and below allow low privilege user write the system backup file under root privilege through GUI thus can cause root system file overwrite.
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Fortinet | Forticlient | <= 6.2.1 |
References
- https://danishcyberdefence.dk/blog/forticlient_linuxExploit, Third Party Advisory
- https://fortiguard.com/psirt/FG-IR-19-238Vendor Advisory
- https://danishcyberdefence.dk/blog/forticlient_linuxExploit, Third Party Advisory
- https://fortiguard.com/psirt/FG-IR-19-238Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2019-16155?
How severe is CVE-2019-16155?
How do I fix CVE-2019-16155?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2019
- CVE-2019-1615A vulnerability in the Image Signature Verification feature …6.7
- CVE-2019-16150Use of a hard-coded cryptographic key to encrypt security se…5.5
- CVE-2019-16151An improper neutralization of input during web page generati…6.1
- CVE-2019-16152A Denial of service (DoS) vulnerability in FortiClient for L…6.5
- CVE-2019-16153A hard-coded password vulnerability in the Fortinet FortiSIE…9.8
- CVE-2019-16154An improper neutralization of input during web page generati…6.1
- CVE-2019-16156An Improper Neutralization of Input vulnerability in the Ano…6.1
- CVE-2019-16157An information exposure vulnerability in Fortinet FortiWeb 6…6.5
- CVE-2019-16159BIRD Internet Routing Daemon 1.6.x through 1.6.7 and 2.x thr…7.5
- CVE-2019-1616A vulnerability in the Cisco Fabric Services component of Ci…8.6
- CVE-2019-16160An integer underflow in the SMB server of MikroTik RouterOS …7.5
- CVE-2019-16161Onigmo through 6.2.0 has a NULL pointer dereference in onig_…7.5
Are you affected by CVE-2019-16155?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
