An Integer Overflow or Wraparound vulnerability [CWE-190] in FortiOS version 7.6.2 and below, version 7.4.7 and below, version 7.2.10 and below, 7.2 all versions, 6.4 all versions, FortiProxy version 7.6.2 and below, version 7.4.3 and below, 7.2 all versions, 7.0 all versions, 2.0 all versions and FortiPAM version 1.5.0, version 1.4.2 and below, 1.3 all versions, 1.2 all versions, 1.1 all versions, 1.0 all versions SSL-VPN RDP and VNC bookmarks may allow an authenticated user to affect the device SSL-VPN availability via crafted requests.
References
Link | Resource |
---|---|
https://fortiguard.fortinet.com/psirt/FG-IR-24-364 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
History
14 Aug 2025, 01:21
Type | Values Removed | Values Added |
---|---|---|
First Time |
Fortinet fortipam
Fortinet fortios Fortinet fortiproxy Fortinet |
|
References | () https://fortiguard.fortinet.com/psirt/FG-IR-24-364 - Vendor Advisory | |
CPE | cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:* cpe:2.3:o:fortinet:fortipam:1.5.0:*:*:*:*:*:*:* cpe:2.3:o:fortinet:fortipam:*:*:*:*:*:*:*:* |
13 Aug 2025, 17:33
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
12 Aug 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-08-12 19:15
Updated : 2025-08-14 01:21
NVD link : CVE-2025-25248
Mitre link : CVE-2025-25248
CVE.ORG link : CVE-2025-25248
JSON object : View
Products Affected
fortinet
- fortipam
- fortios
- fortiproxy
CWE
CWE-190
Integer Overflow or Wraparound