Security
Loading…

CVE-2025-58034

UNKNOWNKnown Exploited
Description

Fortinet FortiWeb contains an OS command Injection vulnerability that may allow an authenticated attacker to execute unauthorized code on the underlying system via crafted HTTP requests or CLI commands.

Timeline
Published:November 18th, 2025 12:00 AM
Last modified:November 18th, 2025 12:00 AM
Added to KEV:November 18th, 2025
CVSS Scoring

No CVSS v3 score available

Affected Software
From NVD CPE configuration data

Vendors

Fortinet

Products

FortiWeb
Weaknesses (CWE)
References & Reports
Advisories, patches, and third-party reports

No references available.

Source: CISA KEV + NVD · Data may lag official sources by up to one minute