Description | This article describes how to check Linux FortiClient EMS packages dependencies. |
Scope | FortiClient EMS 7.4. |
Solution |
When using third-party vulnerability scanner to scan on FortiClient EMS server, it may detect CVE on Linux packages.
In this example, p7zip-full package is detected vulnerable to CVE-2023-52168 and CVE-2023-52169 in the Linux server.
sudo apt-cache depends forticlientems
This output shows that p7zip-full is a dependency of FortiClient EMS.
apt-cache policy p7zip-full
The p7zip-full version is 16.02, which is vulnerable to CVE-2023-52168 and CVE-2023-52169.
This two CVE will be fixed in EMS 7.4.4 version (ETA mid-August2025).
The above verification method can be used to check FortiClient EMS dependencies if there are other vulnerabilities found, as well as to confirm whether the affected package is related to FortiClient EMS. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.