imPC@ndo IT

Tracker / CVE-2025-43892

CVE-2025-43892

Medium 4.3

A buffer over-read vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions may allow an authenticated remote attacker to return a portion of device memory in the redirect response via submitting a specially crafted request.

Affected products and versions

fortinet fortios · 7.2.0 → 7.2.13
fortinet fortios · 7.4.0 → 7.4.8
fortinet fortios · 7.6.0 → 7.6.2
fortinet fortiproxy · 7.2.0 → 7.2.15
fortinet fortiproxy · 7.4.0 → 7.4.13
fortinet fortiproxy · 7.6.0 → 7.6.5

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References