Skip to main content
← All Articles

Tag

#FortiClient EMS

8 articles

Advertisement

VU
CRITICAL
Vulnerabilities

CVE-2026-35616: FortiClient EMS Exploit Delivers EKZ Infostealer

Attackers are actively exploiting CVE-2026-35616, an authentication bypass in FortiClient EMS, to deploy the EKZ infostealer. Protect your organization now.

Runtime Rebel Intel
4 min read·May 28, 2026
FortiClient EMS Critical Flaw Exploited for Credential Stealing
CRITICAL
Vulnerabilities

FortiClient EMS Critical Flaw Exploited for Credential Stealing

Threat actors are actively exploiting a critical, patched FortiClient EMS vulnerability to deploy credential-stealing malware, bypassing trusted endpoint security.

Runtime Rebel Intel
5 min read·May 28, 2026
VU
CRITICAL
Vulnerabilities

CVE-2023-48788: Critical FortiClient EMS RCE Under Active Exploitation

Exploitation of CVE-2023-48788 in FortiClient EMS allows unauthenticated remote code execution. Administrators must patch to version 7.2.3 or 7.0.11 immediately.

Runtime Rebel Intel
3 min read·May 28, 2026
VU
CRITICAL
Vulnerabilities

CVE-2026-35616: Fortinet FortiClient EMS Vulnerability — KEV Alert

CISA adds CVE-2026-35616 affecting Fortinet FortiClient EMS to its Known Exploited Vulnerabilities catalog. Learn how to mitigate this access control flaw.

Runtime Rebel Intel
4 min read·Apr 6, 2026
VU
CRITICAL
Vulnerabilities

FortiClient EMS RCE via CVE-2026-35616 — Mitigation Guide

Fortinet releases emergency patches for CVE-2026-35616, a critical SQL injection flaw in FortiClient EMS exploited to achieve unauthenticated RCE.

Runtime Rebel Intel
4 min read·Apr 5, 2026
CVE-2026-35616: Critical FortiClient EMS API Bypass Exploited
CRITICAL
Vulnerabilities

CVE-2026-35616: Critical FortiClient EMS API Bypass Exploited

Fortinet releases out-of-band patches for CVE-2026-35616, a critical API access bypass in FortiClient EMS enabling unauthenticated privilege escalation.

Runtime Rebel Intel
3 min read·Apr 5, 2026
VU
CRITICAL
Vulnerabilities

Fortinet FortiClient EMS Critical SQLi Flaw Under Active Exploitation

Critical SQL injection in FortiClient EMS allows unauthenticated remote code execution. Active exploitation detected, immediate patching required.

Runtime Rebel Intel
4 min read·Mar 31, 2026
VU
CRITICAL
Vulnerabilities

CVE-2023-48788: FortiClient EMS RCE via SQL Injection Exploit

Exploitation of a critical RCE vulnerability (CVE-2023-48788) in Fortinet FortiClient EMS has been confirmed. Learn how to detect and mitigate this threat.

Runtime Rebel Intel
3 min read·Mar 30, 2026