First published: Mon Apr 07 2025(Updated: )
This vulnerability allows remote attackers to create arbitrary XML schema files on affected installations of Fortinet FortiWeb. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 5.5. The following CVEs are assigned: CVE-2024-55597.
Affected Software | Affected Version | How to fix |
---|---|---|
Fortinet FortiWeb |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of ZDI-CAN-25559 is rated at 5.5 on the CVSS scale.
To fix ZDI-CAN-25559, ensure that you apply the latest security patches provided by Fortinet for FortiWeb.
ZDI-CAN-25559 can be exploited by authenticated remote attackers.
Exploitation of ZDI-CAN-25559 allows the creation of arbitrary XML schema files.
ZDI-CAN-25559 affects Fortinet FortiWeb installations.