PT-2026-24234 · Fortinet · Fortimanager

CVE-2025-54820

·

Publicado

2026-03-10

·

Atualizado

2026-03-18

CVSS v3.1

8.1

Alta

VetorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Fortinet FortiManager versions 7.2.0 through 7.2.10 Fortinet FortiManager versions 7.4.0 through 7.4.2 Fortinet FortiManager 6.4 all versions
Description A stack-based buffer overflow flaw exists in Fortinet FortiManager. A remote, unauthenticated attacker could potentially execute arbitrary commands by sending specially crafted requests, provided the service is enabled. Successful exploitation may depend on bypassing stack protection mechanisms.
Recommendations FortiManager versions 7.2.0 through 7.2.10 should be updated. FortiManager versions 7.4.0 through 7.4.2 should be updated. FortiManager 6.4 all versions should be updated.

Correção

RCE

Buffer Overflow

Memory Corruption

Stack Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2026-02878
CVE-2025-54820

Produtos afetados

Fortimanager