CyberSec.Space Logo
CVEブラウザに戻る

CVE-2025-68648

HIGH
7.2
CVSS Severity Score
EPSS Score0.0000%
EPSS Percentile0.00th
Published2026-03-10
Last Modified2026-05-26
Data SourcesNVD

Vulnerability Description

A use of externally-controlled format string vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.4, FortiAnalyzer 7.4.0 through 7.4.7, FortiAnalyzer 7.2 all versions, FortiAnalyzer 7.0 all versions, FortiAnalyzer Cloud 7.6.2, FortiAnalyzer Cloud 7.4.1 through 7.4.7, FortiAnalyzer Cloud 7.2 all versions, FortiAnalyzer Cloud 7.0 all versions, FortiManager 7.6.0 through 7.6.4, FortiManager 7.4.0 through 7.4.7, FortiManager 7.2 all versions, FortiManager 7.0 all versions, FortiManager Cloud 7.6.2 through 7.6.3, FortiManager Cloud 7.4.1 through 7.4.7, FortiManager Cloud 7.2.1 through 7.2.10, FortiManager Cloud 7.0.1 through 7.0.14 may allow an attacker to escalate its privileges via specially crafted requests.

Affected Platforms (CPE)

📦
Fortinet

Fortianalyzer

>= 7.0.0 and < 7.4.8>= 7.6.0 and < 7.6.5
📦
Fortinet

Fortianalyzer Cloud

>= 7.0.0 and < 7.4.8>= 7.6.0 and < 7.6.5
📦
Fortinet

Fortimanager

>= 7.0.0 and < 7.4.8>= 7.6.0 and < 7.6.5
📦
Fortinet

Fortimanager Cloud

>= 7.0.0 and < 7.4.8>= 7.6.0 and < 7.6.5

References & Advisories

関連する脆弱性情報