Buffer Over-Read Vulnerability in Fortinet FortiOS Software
CVE-2025-47295

3.7LOW

Key Information:

Vendor

Fortinet

Status
Vendor
CVE Published:
28 May 2025

What is CVE-2025-47295?

A buffer over-read issue in Fortinet FortiOS allows a remote unauthenticated attacker to potentially disrupt the FGFM daemon. This vulnerability manifests under rare conditions triggered by maliciously crafted requests, leading to unintended consequences such as service disruptions.

Affected Version(s)

FortiOS 7.4.0 <= 7.4.3

FortiOS 7.2.0 <= 7.2.7

FortiOS 7.0.0 <= 7.0.14

References

CVSS V3.1

Score:
3.7
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-47295 : Buffer Over-Read Vulnerability in Fortinet FortiOS Software