Metrics
Affected Vendors & Products
Fri, 15 Aug 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
| |
Metrics |
ssvc
|
ssvc
|
Wed, 13 Aug 2025 20:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Fortinet
Fortinet fortisiem |
|
CPEs | cpe:2.3:a:fortinet:fortisiem:*:*:*:*:*:*:*:* | |
Vendors & Products |
Fortinet
Fortinet fortisiem |
|
References |
|
Wed, 13 Aug 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 12 Aug 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] in Fortinet FortiSIEM version 7.3.0 through 7.3.1, 7.2.0 through 7.2.5, 7.1.0 through 7.1.7, 7.0.0 through 7.0.3 and before 6.7.9 allows an unauthenticated attacker to execute unauthorized code or commands via crafted CLI requests. | |
Weaknesses | CWE-78 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: fortinet
Published: 2025-08-12T18:59:14.863Z
Updated: 2025-08-16T03:55:46.637Z
Reserved: 2025-02-05T13:31:18.867Z
Link: CVE-2025-25256

Updated: 2025-08-13T20:12:32.941Z

Status : Modified
Published: 2025-08-12T19:15:28.683
Modified: 2025-08-15T18:15:27.583
Link: CVE-2025-25256

No data.