CVE-2023-25610: Critical severity fortios vulnerability
A buffer underwrite ('buffer underflow') vulnerability in the administrative interface of Fortinet FortiOS version 7.2.0 through 7.2.3, version 7.0.0 through 7.0.6, version 6.4.0 through 6.4.11 and version 6.2.12 and below, FortiProxy version 7.2.0 through 7.2.2, version 7.0.0 through 7.0.8, version 2.0.12 and below and FortiOS-6K7K version 7.0.5, version 6.4.0 through 6.4.10 and version 6.2.0 through 6.2.10 and below allows a remote unauthenticated attacker to execute arbitrary code or commands via specifically crafted requests.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-25610?
CVE-2023-25610 has been classified as a high severity vulnerability due to its potential to allow remote attackers to exploit buffer underwrite conditions.
How do I fix CVE-2023-25610?
To mitigate CVE-2023-25610, upgrade your Fortinet FortiOS or FortiProxy to the latest patched versions recommended by Fortinet.
Which versions are affected by CVE-2023-25610?
CVE-2023-25610 affects FortiOS versions from 6.2.12 to 7.2.3 and FortiProxy versions from 7.0.0 to 7.2.2.
Can CVE-2023-25610 impact my network security?
Yes, CVE-2023-25610 can significantly compromise network security by allowing unauthorized access to the administrative interface.
Is CVE-2023-25610 easy to exploit?
Exploitation of CVE-2023-25610 could be relatively straightforward for experienced attackers, making it critical to address promptly.