How to find Fortinet FortiSwitch assets on your network
ID: a1285c75-58ca-53e5-8cfa-e6252ee80dee
STIX ID: report--a1285c75-58ca-53e5-8cfa-e6252ee80dee
Feed Name: runZero Blog
Fortinet has published advisories for two serious FortiSwitch/FortiSwitch Manager vulnerabilities — CVE-2025-49201 (high, CVSS 7.4) which can allow remote unauthenticated code/command execution via the GUI, and CVE-2024-48887 (critical, CVSS 9.3) which allows an unauthenticated user to change an admin password and gain administrative privileges. Fortinet provides patched versions and mitigations (upgrade to 7.2.5+ for FortiSwitch Manager and disable the affected web admin interface where applicable), and the report includes runZero queries to locate potentially impacted assets.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
