HIGHVulnerability
Verified
Global

CISA KEV: Fortinet FortiClient EMS — Fortinet FortiClient EMS Improper Access Control Vulnerability

·Source: CISA KEV

Updated:

Executive Summary

Fortinet FortiClient EMS contains an improper access control vulnerability that may allow an unauthenticated attacker to execute unauthorized code or commands via crafted requests.

Analysis

Fortinet FortiClient EMS contains an improper access control vulnerability that may allow an unauthenticated attacker to execute unauthorized code or commands via crafted requests. Added to CISA Known Exploited Vulnerabilities catalog on 2026-04-06. Remediation due: 2026-04-09.

Indicators of Compromise (1)

CVE (1)
CVE-2026-35616
Source Attribution

Originally published by CISA KEV on Apr 6, 2026. Verified by: CISA.

Related Threats