logo

Multiple Vulnerabilities in Fortinet Products Could Allow for Remote Code Execution

ID: d6276ec4-05c7-5c8d-8e34-687f8759ae92

STIX ID: report--d6276ec4-05c7-5c8d-8e34-687f8759ae92

Feed Name: CISecurity.org Advisories

Threat Score
75/100

Date Published: 2025-02-12

Date Updated: 2026-04-27

...
...

Multiple vulnerabilities were disclosed in Fortinet products (FortiOS, FortiProxy, FortiAnalyzer, FortiManager, FortiSandbox, and others), including critical issues that may allow remote code execution (e.g., a CAPWAP stack-based buffer overflow) and authentication bypass to obtain super-admin privileges, plus several lower-severity flaws (information exposure, XSS, path traversal, command injection, hard-coded keys). Successful exploitation could allow attackers to run arbitrary code, escalate privileges, and access or modify data on affected systems.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.