CVE-2025-67685: SSRF in GUI console
A Server-Side Request Forgery (SSRF) vulnerability [CWE-918] in FortiSandbox may allow an authenticated attacker to proxy internal requests limited to plaintext endpoints only via crafted HTTP requests.
Other sources
A Server-Side Request Forgery (SSRF) vulnerability [CWE-918] vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.4, FortiSandbox 4.4 all versions, FortiSandbox 4.2 all versions, FortiSandbox 4.0 all versions may allow an authenticated attacker to proxy internal requests limited to plaintext endpoints only via crafted HTTP requests.
— MITRE
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-67685?
The severity of CVE-2025-67685 is assessed as critical due to the potential for an attacker to exploit the SSRF vulnerability.
How do I fix CVE-2025-67685?
To fix CVE-2025-67685, upgrade FortiSandbox to version 5.0.5 or later.
What types of requests are affected by CVE-2025-67685?
CVE-2025-67685 specifically affects plaintext internal requests that can be proxied by an authenticated attacker.
Which versions of FortiSandbox are impacted by CVE-2025-67685?
CVE-2025-67685 impacts FortiSandbox versions 5.0.0 to 5.0.4 along with certain earlier versions.
Is user authentication required to exploit CVE-2025-67685?
Yes, CVE-2025-67685 requires the attacker to be an authenticated user to exploit the vulnerability.