Exploited Vulnerabilities Daily
🌐 繁體中文

← 所有新增項目

CVE-2025-25249: Fortinet Multiple Products

Fortinet FortiOS,FortiSwitchManager,和FortiSASE包含一個基於堆積的緩衝溢位脆弱性,允許攻擊者透過專門設計的包執行未經授權的程式碼或命令。

CISA (English)

Fortinet FortiOS, FortiSwitchManager, and FortiSASE contain a heap-based buffer overflow vulnerability that allows an attacker to execute unauthorized code or commands via specially crafted packets.

廠商
Fortinet
產品
Multiple Products
漏洞
Fortinet Multiple Products Heap-based Buffer Overflow Vulnerability
加入日期
2026年9月9日
CISA 修補期限(美國聯邦機關)
2026年9月12日
已知用於勒索軟體攻擊
未知
弱點(CWE)
CWE-122, CWE-787

參考資料

本站僅為資訊目的整理 CISA 目錄,並非資安建議。請遵循廠商指引與官方公告。

最後更新: · 目錄版本 2026.10.02