CVE-2025-25249

CVSS 8.1 · HIGH
Exploited in the wild
Remediation overdue by 13 days
1 public PoC
Proof-of-concept code linked in references
EPSS p83
Higher than 83% of all CVEs — elevated exploitation risk.
Patch available
Vendor advisory or patch linked

Published 1/13/2026 · updated 9/10/2026 · CWE-122, CWE-787

Share
Get asset-aware triage

Summary

A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through 7.2.11, FortiOS 7.0.0 through 7.0.17, FortiOS 6.4 all versions, FortiSwitchManager 7.2.0 through 7.2.6, FortiSwitchManager 7.0.0 through 7.0.5 allows attacker to execute unauthorized code or commands via specially crafted packets

CVSS 8.1 — HIGH

8.1 / 10
  • AV: Network
  • AC: High complexity
  • PR: No privileges
  • UI: No user interaction
  • S: Scope unchanged
  • C: Confidentiality: High
  • I: Integrity: High
  • A: Availability: High

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS exploitation probability

2.4%

Percentile p83 — Higher than 83% of all CVEs — elevated exploitation risk.

Affected products

4 vendor/product entries
  • Fortinet Fortios≥ 6.4.0 and < 7.0.18
  • Fortinet Fortiswitchmanager≥ 7.0.0 and < 7.0.6
  • Fortinet Fortisasev25.1.39, v25.1.51
  • Siemens Ruggedcom Ape1808 Firmwareall versions
Do you run any of these? Sign in to match this CVE against your SBOM and asset inventory automatically.

Timeline

  1. Jan 13, 2026 · Disclosed / published in NVD
  2. Sep 9, 2026 · Added to CISA KEV catalog
  3. Sep 10, 2026 · Intel last updated
  4. Sep 12, 2026 · CISA remediation deadline

Intel sources

Which upstream feeds returned data for this CVE, and when they were last fetched.

  • NVD· 12 days ago
  • CVE.org· 12 days ago
  • FIRST EPSS· 12 days ago
  • CISA KEV· 12 days ago
  • OSV· 12 days ago

Listed in CISA KEV

Added 2026-09-09 · Remediation overdue by 13 days.

References

Unlock the full report

See how CVE-2025-25249 hits your stack.

Free public data ends here. Sign in to correlate this CVE against your SBOM and assets, get an AI-grounded exploit chain, generate a ModSecurity virtual patch, and share findings with your team.

  • · Asset-aware CVSS & priority
  • · Grounded AI analysis (A–D graded)
  • · Auto-generated WAF / IPS rules
  • · Jira, SIEM, Slack, Teams delivery

No credit card · 100 free enrichments · analyst-grade citations.