logo

CVE-2025-32756

ID: ad9a3de1-d4c4-53b0-b536-d28d02495fef

STIX ID: report--ad9a3de1-d4c4-53b0-b536-d28d02495fef

Feed Name: Arctic Wolf Blog

Threat Score
90/100

Date Published: 2025-05-13

Date Updated: 2026-04-27

...
...

**CVE-2025-32756 (Fortinet)** — A critical stack-based overflow affecting FortiVoice, FortiCamera, FortiMail, FortiNDR, and FortiRecorder enables unauthenticated remote code execution via crafted HTTP requests; Fortinet confirms exploitation in the wild (observed against FortiVoice) and has published fixes and IoCs. Arctic Wolf strongly recommends upgrading to listed fixed versions or disabling the HTTP/HTTPS admin interface as a temporary workaround; observed post-exploitation behavior includes malware deployment, credential theft via cron jobs, and network reconnaissance.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.