An unquoted service path vulnerability in the FortiClient FortiTray component of FortiClientWindows v6.2.2 and prior allow an attacker to gain elevated privileges via the FortiClientConsole executable service path.
- https://fortiguard.com/advisory/FG-IR-19-281
- https://github.com/0xT11/CVE-POC
- https://github.com/Ibonok/CVE-2019-17658
- https://github.com/developer3000S/PoC-in-GitHub
- https://github.com/hectorgie/PoC-in-GitHub