A buffer over-read vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions may allow an authenticated remote attacker to return a portion of device memory in the redirect response via submitting a specially crafted request.
References
| Link | Resource |
|---|---|
| https://fortiguard.fortinet.com/psirt/#5944 | Vendor Advisory |
| https://cert-portal.siemens.com/productcert/html/ssa-864900.html |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-07-14 16:16
Updated : 2026-08-11 13:17
NVD link : CVE-2025-43892
Mitre link : CVE-2025-43892
CVE.ORG link : CVE-2025-43892
JSON object : View
Products Affected
fortinet
- fortios
- fortiproxy
CWE
CWE-126
Buffer Over-read
