CVE-2025-25249 KEV
8.1
HIGH · CVSS 3.1 · EPSS 3.9% (pctl 90)
Patch first
On CISA KEV — known exploited in the wild, due 2026-09-12.
Description
A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through 7.2.11, FortiOS 7.0.0 through 7.0.17, FortiOS 6.4 all versions, FortiSwitchManager 7.2.0 through 7.2.6, FortiSwitchManager 7.0.0 through 7.0.5 allows attacker to execute unauthorized code or commands via specially crafted packets
Scoring
| CVSS | 8.1 (HIGH, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 3.86% — more likely to be exploited than 90% of all CVEs |
| Weakness | CWE-122 |
| On CISA KEV | yes — remediate by 2026-09-12 |
| Public exploit | none known |
| Published | 2026-01-13 |
| Last modified | 2026-09-10 |
CISA KEV
| Name | Fortinet Multiple Products Heap-based Buffer Overflow Vulnerability |
|---|---|
| Added | 2026-09-09 |
| Due | 2026-09-12 |
| Vendor / product | Fortinet / Multiple Products |
| Ransomware use | none reported |
Affected (5)
| Vendor | Product |
|---|---|
| fortinet | fortios |
| fortinet | fortisase |
| fortinet | fortiswitchmanager |
| siemens | ruggedcom ape1808 |
| siemens | ruggedcom ape1808 firmware |
References
→ the Explorer · watch your stack · NVD