Skip to main content

CVE-2025-25249

8.1
HIGHCVSS v3.1 Base Score
0.02%
LOW RiskEPSS (4th percentile)

A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through 7.2.11, FortiOS 7.0.0 through 7.0.17, FortiOS 6.4.0 through 6.4.16, FortiSwitchManager 7.2.0 through 7.2.6, FortiSwitchManager 7.0.0 through 7.0.5 allows attacker to execute unauthorized code or commands via specially crafted packets

Published: 1/13/2026
Modified: 1/16/2026
Back to CVE Lookup

Vulnerability Summary

CVSS v3 Score

8.1HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS Score (Exploitation Probability)

0.02%LOW Exploitation Risk
4th percentile

This vulnerability has a 0.02% probability of being exploited in the next 30 days, ranking higher than 4% of all scored CVEs.

Related Vulnerabilities