CVE-2025-64157: Format String Vulnerability in CAPWAP fast-failover mode
A Use of Externally-Controlled Format String vulnerability [CWE-134] in FortiGate may allow an authenticated admin to execute unauthorized code or commands via specifically crafted configuration.
Other sources
A use of externally-controlled format string vulnerability in Fortinet FortiOS 7.6.0 through 7.6.4, FortiOS 7.4.0 through 7.4.9, FortiOS 7.2.0 through 7.2.11, FortiOS 7.0 all versions allows an authenticated admin to execute unauthorized code or commands via specifically crafted configuration.
— MITRE
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-64157?
CVE-2025-64157 has a critical severity level due to the potential for unauthorized code execution by authenticated administrators.
How do I fix CVE-2025-64157?
To fix CVE-2025-64157, upgrade FortiOS to version 7.6.5 or 7.4.10 or later.
Which versions of FortiOS are affected by CVE-2025-64157?
CVE-2025-64157 affects FortiOS versions 7.6.0 to 7.6.4, 7.4.0 to 7.4.9, and 7.2.0 to 7.2.11.
What type of vulnerability is CVE-2025-64157?
CVE-2025-64157 is classified as a Format String Vulnerability [CWE-134], allowing potential code execution.
Who is impacted by CVE-2025-64157?
CVE-2025-64157 impacts administrators of FortiGate devices running vulnerable versions of FortiOS.