Honeypot: FortiWeb CVE-2025-64446 Exploits, (Sat, Nov 15th)
ID: 1886576c-cfc1-5f72-a142-2a5f0ff2a7bf
STIX ID: report--1886576c-cfc1-5f72-a142-2a5f0ff2a7bf
Feed Name: SANS ISC Diary
Threat Score
Observed exploit attempts targeting CVE-2025-64446 against FortiWeb were detected in honeypots: specific HTTP POST requests (with a shown path, User-Agent string, and POST payload) result in creation of a new admin user (profile: prof_admin). The report includes request artifacts and a link to a public PoC demonstrating the exploit.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
