Back to Live Pulse
Critical
Forticlientems
Improper Access Control

CVE-2026-35616

Description

A improper access control vulnerability in Fortinet FortiClientEMS 7.4.5 through 7.4.6 may allow an unauthenticated attacker to execute unauthorized code or commands via crafted requests.

Proof of Concept (POC) Links

Explore how this vulnerability can be reproduced or exploited.