Header image overlay

FortiClient EMS – update required

Our experts keep you up-to-date on critical cyber threats (CVEs)

We are informing you about a critical vulnerability in FortiClient EMS (CVSS 9.1) for which an essential update is required. This vulnerability could impact environments where FortiClient EMS is currently in use.

FortiClient EMS – update required

What is going on?

Fortinet has released a security advisory describing a vulnerability in FortiClient EMS.

The vulnerability has a CVSS score of 9.1, what does that mean that this as criticism is considered and that swift action is advised.

It is important to know that only FortiClient EMS versions 7.4.5 and 7.4.6 are impacted.
Environments that use versions 7.2.x are not impacted due to this vulnerability.

Take action

We advise to Patch FortiClient EMS as soon as possible.

An upgrade to Version 7.4.7 is recommended, but this version is Not yet released at this time.

In the meantime, the available hotfix to be applied to the following versions:

  • FortiClient EMS 7.4.5
  • FortiClient EMS 7.4.6

FortiClient on the client side requires in the context of this vulnerability not to be upgraded.

You can find more information about this vulnerability via FortiGuard PSIRT: PSIRT | FortiGuard Labs

Customers enjoying our Managed Security services and using FortiClient EMS can rest assured. All managed security customers with EMS were already patched last weekend and were individually notified.

Do you not have a Managed services contract and would you like to utilise our expertise to successfully complete this software update? Please do not hesitate to contact us via support@vanroey.be

Can't create tickets? Ask here to get an account. If our Engineer needs to remotely control your PC, he or she will ask you to run this software .

Receive our newsletter including invitations to events & interesting industry news!

Receive alerts from current CVEs and tips to remedy them!

By registering, you agree to our privacy policy.

Two Belgian IT players want join forces in a single integrated IT group for managed IT services under the name Dynamate