← العودة للجدول
CVE-2025-47855
CVE-2025-47855 — An exposure of sensitive information to an unauthorized actor [CWE-200] vulnerab
📅 2026-01-13
🔴 Critical 🔥 No NVD Exploit Fortinet CVSS 9.8 🎯 EPSS 1.19%

📋 الوصف الكامل

An exposure of sensitive information to an unauthorized actor [CWE-200] vulnerability in Fortinet FortiFone 7.0.0 through 7.0.1, FortiFone 3.0.13 through 3.0.23 allows an unauthenticated attacker to obtain the device configuration via crafted HTTP or HTTPS requests.

💻 الأنظمة المتأثرة

Fortinet

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2025-47855

📡 المصدر

NVD

✅ الحلول والتخفيف

Fortinet PSIRT Advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←