Skip to main content
padi
Visitor III
August 22, 2022
Question

Vulnerability result on EMS not detailed as on client

  • August 22, 2022
  • 2 replies
  • 4965 views

Hi guys

I've a question about de vulnerability scan result from FortiClient.

On the client in the scan results there is found an application which uses log4net. On the client I can see whats the vulnerability an in which path it's located.

But on the EMS server I only see the vulnerbaility and not where it's located. Maybe I failed to see it on the EMS server...

 

Can someone help me out??

Patric

2 replies

Contributor
August 24, 2022
Hello @padi,
 
Thank you for using the Community Forum. We see you trying to look for the current vulnerabilities in the EMS server. Could you let me know if you have followed the below docs?
 
 
Hope this is helpful.
 
Thanks,
padi
padiAuthor
Visitor III
August 25, 2022

Hi Aashiq 

Yes if seen this but this is not really what I meen. So for explanation, on the client I can see following entrey on the vulnerability tab:
Client.pngI can see in which location the log4net.dll is located, so I can see which programm is the malefactor

 

 

 

 

On the the EMS Server on this client I only can see that there is an vulnerability

EMSServer.pngI can't see the location where the files is located.

 

So I have more information on the client site than on the EMS site.

 

Patric

btan
Staff & Editor
Staff & Editor
August 25, 2022

Hi padi,


Do you have a FortiCare ticket opened with us?
I found an Internal similar thread discussing this:
-[Improvement Suggestion]Vulnerability logging with filepath and applications
-Display vulnerability detected paths

 

"To display vulnerable file location on EMS" is being scheduled on EMS 7.0.8.

 

insignis
Explorer
July 13, 2023

I'm on 7.0.8 and I don't see where the affected file(s) is indicated in the GUI.  I also checked the release notes, and I don't see this issue mentioned in the resolved issue list or the known issue list.

padi
padiAuthor
Visitor III
July 13, 2023

Yes I can confirm we have now FortiClient EMS on 7.2.1 and diffrent client versions, also 7.2.1 and I can't see the path of the vul files on EMS server.