← العودة للجدول
CVE-2025-64155
CVE-2025-64155 — An improper neutralization of special elements used in an os command ('os c
📅 2026-01-13
🔴 Critical 🔥 No NVD Exploit Fortinet CVSS 9.8 🎯 EPSS 0.08%

📋 الوصف الكامل

An improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSIEM 7.4.0, FortiSIEM 7.3.0 through 7.3.4, FortiSIEM 7.1.0 through 7.1.8, FortiSIEM 7.0.0 through 7.0.4, FortiSIEM 6.7.0 through 6.7.10 may allow an attacker to execute unauthorized code or commands via crafted TCP requests.

💻 الأنظمة المتأثرة

Fortinet

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2025-64155

📡 المصدر

NVD

✅ الحلول والتخفيف

Fortinet PSIRT Advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←