Metrics
Affected Vendors & Products
No advisories yet.
Solution
Please upgrade to FortiSIEM version 7.4.0 or above Please upgrade to FortiSIEM version 7.3.2 or above Please upgrade to FortiSIEM version 7.2.6 or above Please upgrade to FortiSIEM version 7.1.8 or above Please upgrade to FortiSIEM version 7.0.4 or above Please upgrade to FortiSIEM version 6.7.10 or above
Workaround
No workaround given by the vendor.
Fri, 15 Aug 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
ssvc
|
ssvc
|
Wed, 13 Aug 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Fortinet
Fortinet fortisiem |
|
| CPEs | cpe:2.3:a:fortinet:fortisiem:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Fortinet
Fortinet fortisiem |
|
| References |
|
Wed, 13 Aug 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 12 Aug 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] in Fortinet FortiSIEM version 7.3.0 through 7.3.1, 7.2.0 through 7.2.5, 7.1.0 through 7.1.7, 7.0.0 through 7.0.3 and before 6.7.9 allows an unauthenticated attacker to execute unauthorized code or commands via crafted CLI requests. | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2025-08-16T03:55:46.637Z
Reserved: 2025-02-05T13:31:18.867Z
Link: CVE-2025-25256
Updated: 2025-08-13T20:12:32.941Z
Status : Modified
Published: 2025-08-12T19:15:28.683
Modified: 2025-08-15T18:15:27.583
Link: CVE-2025-25256
No data.
OpenCVE Enrichment
Updated: 2025-08-13T21:47:08Z