CVE-2025-54821: Trusted hosts bypass via SSH
An Improper Privilege Management vulnerability [CWE-269] in FortiOS, FortiProxy and FortiPAM may allow an authenticated administrator to bypass the trusted host policy via crafted CLI command.
Other sources
An Improper Privilege Management vulnerability [CWE-269] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.11, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions, FortiPAM 1.6.0, FortiPAM 1.5 all versions, FortiPAM 1.4 all versions, FortiPAM 1.3 all versions, FortiPAM 1.2 all versions, FortiPAM 1.1 all versions, FortiPAM 1.0 all versions, FortiSASE 25.2.91 may allow an authenticated administrator to bypass the trusted host policy via crafted CLI command.
— MITRE
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
FortiOSto a version that resolves this vulnerability.Fixed in 7.4.12 - Upgrade
Upgrade
FortiOSto a version that resolves this vulnerability.Fixed in 7.6.4 - Upgrade
Upgrade
FortiOSto a version that resolves this vulnerability.Fixed in 8.0.0 - Upgrade
Upgrade
FortiPAMto a version that resolves this vulnerability.Fixed in 1.6.1 - Upgrade
Upgrade
FortiPAMto a version that resolves this vulnerability.Fixed in 1.7.0 - Upgrade
Upgrade
FortiProxyto a version that resolves this vulnerability.Fixed in 7.6.4 - Upgrade
Upgrade
FortiProxyto a version that resolves this vulnerability.Fixed in 7.4.14
Event History
Frequently Asked Questions
What is the severity of CVE-2025-54821?
The severity of CVE-2025-54821 is considered high due to its improper privilege management vulnerabilities.
How do I fix CVE-2025-54821?
To fix CVE-2025-54821, upgrade FortiOS to version 7.6.4 or higher and FortiPAM to version 1.6.1 or higher.
Which versions of Fortinet products are affected by CVE-2025-54821?
CVE-2025-54821 affects Fortinet FortiOS versions 7.6.0 to 7.6.3, all versions of 7.4, 7.2, 7.0, 6.4, and various versions of FortiPAM.
Is Fortinet FortiProxy affected by CVE-2025-54821?
Yes, Fortinet FortiProxy is affected by CVE-2025-54821 if it is running versions between 7.6.0 and 7.6.3, as well as all versions of 7.4, 7.2, and 7.0.
What impact does CVE-2025-54821 have on affected systems?
CVE-2025-54821 may allow an attacker to exploit improper privilege management, which could lead to unauthorized access to sensitive information or administrative controls.