Back to CVE List

CVE-2025-64157

MEDIUM SEVERITY

CVSS Score & Metrics

Base Score
6.7 / 10
Vector String
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Vulnerability Description

A use of externally-controlled format string vulnerability in Fortinet FortiOS 7.6.0 through 7.6.4, FortiOS 7.4.0 through 7.4.9, FortiOS 7.2.0 through 7.2.11, FortiOS 7.0 all versions allows an authenticated admin to execute unauthorized code or commands via specifically crafted configuration.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-134
Source
NVD
Vendor
Fortinet
Product
FortiOS

External References

Discussion (0)

Add Comment

No comments yet. Be the first!