CVE-2025-48840: Medium severity Fortinet FortiWeb vulnerability
An authentication bypass by spoofing vulnerability in Fortinet FortiWeb 7.6.0 through 7.6.3, FortiWeb 7.4.0 through 7.4.8, FortiWeb 7.2 all versions, FortiWeb 7.0 all versions may allow a remote unauthenticated attacker to bypass hostname restrictions via a specially crafted request.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-48840?
CVE-2025-48840 is classified as a critical vulnerability due to its potential for remote unauthenticated exploitation.
How do I fix CVE-2025-48840?
To remediate CVE-2025-48840, upgrade Fortinet FortiWeb to version 7.6.4 or later, as well as 7.4.9 or later.
What versions of Fortinet FortiWeb are affected by CVE-2025-48840?
CVE-2025-48840 affects Fortinet FortiWeb versions 7.6.0 to 7.6.3, 7.4.0 to 7.4.8, and all versions from 7.0, 7.2.
Can my Fortinet FortiWeb be exploited if it is configured correctly regarding hostname restrictions for CVE-2025-48840?
Yes, even with correct hostname restrictions, CVE-2025-48840 allows for remote exploitation through specially crafted requests.
Is authentication required to exploit CVE-2025-48840?
No, CVE-2025-48840 allows an unauthenticated attacker to bypass authentication mechanisms.