CVE-2026-44278
A use of hard-coded cryptographic key vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.2, FortiClientWindows 7.2 all versions may allow attacker to information disclosure via <insert attack vector here>
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2026-44278?
CVE-2026-44278 has a high severity rating due to the potential for information disclosure via the use of hard-coded cryptographic keys.
How do I fix CVE-2026-44278?
To mitigate CVE-2026-44278, Fortinet recommends upgrading FortiClient Windows to versions 7.4.3 or later and ensuring that any hard-coded keys are replaced.
What versions of Fortinet FortiClient Windows are affected by CVE-2026-44278?
CVE-2026-44278 affects Fortinet FortiClient Windows versions 7.4.0 to 7.4.2 and all versions of 7.2.
What type of vulnerability is CVE-2026-44278?
CVE-2026-44278 is categorized as a use of hard-coded cryptographic key vulnerability that can lead to information disclosure.
Can CVE-2026-44278 be exploited remotely?
Yes, CVE-2026-44278 may be exploited remotely by an attacker to disclose sensitive information.