Date version

Produits Fortinet

Des vulnérabilités ont été découvertes dans les produits Fortinet. L'exploitation de ces failles pourrait permettre à un utilisateur malveillant d'exécuter du code arbitraire et de provoquer une atteinte à la confidentialité des données.

NB: Les CVE-2025-59718 et CVE-2025-59719 sont exploitées.

  • Refer
    tunCERT/Vuln.2025-561
    Version
    1.0
    Date de publication
Impact
Déni de service
Exécution de code arbitraire
Perte d'intégrité
Perte de confidentialité
Plateforme
Indépendant de la Plate-forme
Produits impactés

FortiOS 7.6.0 à 7.6.3, 7.4.0 à 7.4.8, 7.2.0 à 7.2.11, 7.0.0 à 7.0.17

FortiWeb 8.0.0 à 8.0.1, 7.6.0 à 7.6.5, 7.4.0 à 7.4.10, 7.2.0 à 7.2.11, 7.0.0 à 7.0.11

FortiSandbox 5.0.0 à 5.0.2, 4.4.0 à 4.4.7

FortiVoice 7.2.0 à 7.2.2, 7.0.0 à 7.0.7

FortiProxy  7.6.3, 7.4.0 à 7.4.10, 7.2.0 à 7.2.14, 7.0.0 à 7.0.21

FortiSwitchManager 7.2.0 à 7.2.6, 7.0.0 à 7.0.5

FortiPortal  7.4.0 à 7.4.5

FortiExtender 7.6.0 à 7.6.3, 7.4.0 à 7.4.7

FortiAnalyzer , FortiManager  7.4.0 à 7.4.2, 7.2.0 à 7.2.5
 

Identificants du problème
    • CVE-2025-64447 CVE-2025-59718 CVE-2025-59719 CVE-2025-53949 CVE-2025-60024 CVE-2025-54838 CVE-2025-64153 CVE-2024-40593