CVE-2025-58903
2.7LOWAn Unchecked Return Value vulnerability [CWE-252] in Fortinet FortiOS version 7.6.0 through 7.6.3 and before 7.4.8 API allows an authenticated user to cause a Null Pointer Dereference, crashing the h
Published: 10/14/2025Updated: 10/14/2025
Description
An Unchecked Return Value vulnerability [CWE-252] in Fortinet FortiOS version 7.6.0 through 7.6.3 and before 7.4.8 API allows an authenticated user to cause a Null Pointer Dereference, crashing the http daemon via a specialy crafted request.
AI AnalysisPowered by AI
Affected Products
fortinetfortios
fortinetfortios
References
- https://fortiguard.fortinet.com/psirt/FG-IR-25-653Vendor Advisory