Integer Overflow Vulnerability in FortiOS and FortiProxy Products
CVE-2025-25248
6.5MEDIUM
What is CVE-2025-25248?
An Integer Overflow vulnerability in FortiOS and FortiProxy products could allow authenticated users to craft specific requests that may disrupt the availability of SSL-VPN services. Affected versions include FortiOS 7.6.2 and below, FortiProxy 7.6.2 and below, along with various versions across other products. Users are advised to review the vendor's security updates to mitigate potential risks.
Affected Version(s)
FortiOS 7.6.0 <= 7.6.2
FortiOS 7.4.0 <= 7.4.7
FortiOS 7.2.0 <= 7.2.10