CVE-2025-64446: Path confusion vulnerability in GUI
A relative path traversal vulnerability [CWE-23] in FortiWeb may allow an unauthenticated attacker to execute administrative commands on the system via crafted HTTP or HTTPS requests. Fortinet has observed this to be exploited in the wild FortiAppSec Cloud is NOT impacted by this vulnerability.
Other sources
A relative path traversal vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.1, FortiWeb 7.6.0 through 7.6.4, FortiWeb 7.4.0 through 7.4.9, FortiWeb 7.2.0 through 7.2.11, FortiWeb 7.0.0 through 7.0.11 may allow an attacker to execute administrative commands on the system via crafted HTTP or HTTPS requests.
— NVD
Fortinet FortiWeb contains a relative path traversal vulnerability that may allow an unauthenticated attacker to execute administrative commands on the system via crafted HTTP or HTTPS requests.
— CISA
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Fortinet FortiWebto a version that resolves this vulnerability.Fixed in 7.0.12 - Upgrade
Upgrade
Fortinet FortiWebto a version that resolves this vulnerability.Fixed in 7.2.12 - Upgrade
Upgrade
Fortinet FortiWebto a version that resolves this vulnerability.Fixed in 7.4.10 - Upgrade
Upgrade
Fortinet FortiWebto a version that resolves this vulnerability.Fixed in 7.6.5 - Upgrade
Upgrade
Fortinet FortiWebto a version that resolves this vulnerability.Fixed in 8.0.2
Event History
Frequently Asked Questions
What is the severity of CVE-2025-64446?
CVE-2025-64446 is classified as a high severity vulnerability due to its potential to allow attackers to execute administrative commands on affected systems.
How do I fix CVE-2025-64446?
To fix CVE-2025-64446, update Fortinet FortiWeb to the latest version recommended by the vendor, addressing the vulnerability.
Which versions are affected by CVE-2025-64446?
CVE-2025-64446 affects Fortinet FortiWeb versions 8.0.0 to 8.0.1, 7.6.0 to 7.6.4, 7.4.0 to 7.4.9, 7.2.0 to 7.2.11, and 7.0.0 to 7.0.11.
What type of vulnerability is CVE-2025-64446?
CVE-2025-64446 is a relative path traversal vulnerability that may allow unauthorized command execution.
Can CVE-2025-64446 be exploited remotely?
Yes, CVE-2025-64446 can potentially be exploited remotely through crafted HTTP or HTTPS requests.