CVE-2026-59836: Critical severity Fortinet FortiClientEMS vulnerability
A improper certificate validation vulnerability in Fortinet FortiClientEMS 7.4.3 through 7.4.5, FortiClientEMS 7.4.0 through 7.4.1, FortiClientEMS 7.2 all versions may allow attacker to information disclosure via <insert attack vector here>
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Fortinet FortiClientEMSto a version that resolves this vulnerability.Fixed in 7.4.6 - Upgrade
Upgrade
Fortinet FortiClientEMSto a version that resolves this vulnerability.Fixed in 8.0.0
Event History
Frequently Asked Questions
What is the severity of CVE-2026-59836?
The severity of CVE-2026-59836 is rated as medium with a score of 6.7.
How do I fix CVE-2026-59836?
To fix CVE-2026-59836, users should upgrade to FortiClientEMS version 7.4.6 or later.
What type of impact can CVE-2026-59836 have on my system?
CVE-2026-59836 can lead to information disclosure due to improper certificate validation.
Which versions of FortiClientEMS are affected by CVE-2026-59836?
FortiClientEMS versions 7.4.3 through 7.4.5, 7.4.0 through 7.4.1, and all versions of 7.2 are affected by CVE-2026-59836.
What is the attack vector for CVE-2026-59836?
The specific attack vector for CVE-2026-59836 has not been disclosed, but it involves improper certificate validation.