logo

Honeypot: FortiWeb CVE-2025-64446 Exploits, (Sat, Nov 15th)

ID: 1886576c-cfc1-5f72-a142-2a5f0ff2a7bf

STIX ID: report--1886576c-cfc1-5f72-a142-2a5f0ff2a7bf

Feed Name: SANS ISC Diary

Threat Score
75/100

Date Published: 2025-11-15

Date Updated: 2026-04-19

...
...

Observed exploit attempts targeting CVE-2025-64446 against FortiWeb were detected in honeypots: specific HTTP POST requests (with a shown path, User-Agent string, and POST payload) result in creation of a new admin user (profile: prof_admin). The report includes request artifacts and a link to a public PoC demonstrating the exploit.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.