What is CVE-2026-70465?
CVE-2026-70465 is a classic buffer overflow vulnerability found in Fortinet FortiClientWindows versions 7.4.0-7.4.3 and 7.2.0-7.2.11. It could allow an unauthenticated attacker who can manipulate DNS responses to execute arbitrary code on the targeted host. Users are advised to apply patches immediately.
Azərbaycanca: CVE-2026-70465 Fortinet FortiClientWindows-un 7.4.0-7.4.3 və 7.2.0-7.2.11 versiyalarında aşkarlanan klassik buffer overflow zəifliyidir. Bu boşluq autentifikasiya olunmamış hücumçuya xüsusi hazırlanmış DNS cavabları vasitəsilə hədəf sistemdə ixtiyari kod icra etməyə imkan verə bilər. İstifadəçilərə dərhal yamaq tətbiq etmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-119; shared vendor: Fortinet
FAQ2
Which versions of FortiClientWindows are affected by CVE-2026-70465?
This vulnerability affects Fortinet FortiClientWindows versions 7.4.0 through 7.4.3 and 7.2.0 through 7.2.11.
Does exploiting CVE-2026-70465 require authentication?
No, this vulnerability can be exploited by an unauthenticated attacker through specially crafted DNS responses.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.