logo

How to find Fortinet FortiSwitch assets on your network

ID: a1285c75-58ca-53e5-8cfa-e6252ee80dee

STIX ID: report--a1285c75-58ca-53e5-8cfa-e6252ee80dee

Feed Name: runZero Blog

Threat Score
75/100

Date Published: 2025-04-08

Date Updated: 2026-04-29

Author: Matthew Kienow

...
...

Fortinet has published advisories for two serious FortiSwitch/FortiSwitch Manager vulnerabilities — CVE-2025-49201 (high, CVSS 7.4) which can allow remote unauthenticated code/command execution via the GUI, and CVE-2024-48887 (critical, CVSS 9.3) which allows an unauthenticated user to change an admin password and gain administrative privileges. Fortinet provides patched versions and mitigations (upgrade to 7.2.5+ for FortiSwitch Manager and disable the affected web admin interface where applicable), and the report includes runZero queries to locate potentially impacted assets.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.