Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Fortinet Releases Patch for Critical SQL Injection Flaw in FortiWeb (CVE-2025-25257)

Fortinet Releases Patch for Critical SQL Injection Flaw in FortiWeb (CVE-2025-25257)

Posted on July 11, 2025July 11, 2025 By CWS

Jul 11, 2025Ravie LakshmananUnited States
Fortinet has launched fixes for a important safety flaw impacting FortiWeb that would allow an unauthenticated attacker to run arbitrary database instructions on vulnerable situations.
Tracked as CVE-2025-25257, the vulnerability carries a CVSS rating of 9.6 out of a most of 10.0.
“An improper neutralization of particular components utilized in an SQL command (‘SQL Injection’) vulnerability [CWE-89] in FortiWeb could permit an unauthenticated attacker to execute unauthorized SQL code or instructions by way of crafted HTTP or HTTPs requests,” Fortinet mentioned in an advisory launched this week.

The shortcoming impacts the next variations –

FortiWeb 7.6.0 by 7.6.3 (Improve to 7.6.4 or above)
FortiWeb 7.4.0 by 7.4.7 (Improve to 7.4.8 or above)
FortiWeb 7.2.0 by 7.2.10 (Improve to 7.2.11 or above)
FortiWeb 7.0.0 by 7.0.10 (Improve to 7.0.11 or above)

Kentaro Kawane from GMO Cybersecurity, who was lately credited with reporting a set of important flaws in Cisco Identification Companies and ISE Passive Identification Connector (CVE-2025-20286, CVE-2025-20281, and CVE-2025-20282), has acknowledged for locating the difficulty.
In an evaluation revealed as we speak, watchTowr Labs mentioned the issue is rooted in a perform referred to as “get_fabric_user_by_token” that is related to the Cloth Connector element, which acts as a bridge between FortiWeb and different Fortinet merchandise.
The perform, in flip, is invoked from one other perform named “fabric_access_check,” that is referred to as from three totally different API endpoints: “/api/material/gadget/standing,” “/api/v[0-9]/material/widget/[a-z]+,” and “/api/v[0-9]/material/widget.”
The problem is that attacker-controlled enter – handed by way of a Bearer token Authorization header in a specifically crafted HTTP request – is handed on to an SQL database question with out ample sanitization to make it possible for it is not dangerous and doesn’t embrace any malicious code.

The assault will be prolonged additional by embedding a SELECT … INTO OUTFILE assertion to put in writing the outcomes of command execution to a file within the underlying working system by benefiting from the truth that the question is run because the “mysql” person.

“The brand new model of the perform replaces the earlier format-string question with ready statements – an inexpensive try to forestall easy SQL injection,” safety researcher Sina Kheirkhah mentioned.
As non permanent workarounds till the mandatory patches will be utilized, customers are really useful to disable HTTP/HTTPS administrative interface.
With flaws in Fortinet gadgets having been exploited by menace actors up to now, it is important that customers transfer rapidly to replace to the newest model to mitigate potential dangers.

Discovered this text attention-grabbing? Observe us on Twitter  and LinkedIn to learn extra unique content material we submit.

The Hacker News Tags:Critical, CVE202525257, Flaw, Fortinet, FortiWeb, Injection, Patch, Releases, SQL

Post navigation

Previous Post: Arkana Ransomware Claimed to Have Stolen 2.2 Million Customer Records
Next Post: CISA Releases 13 New Industrial Control Systems Surrounding Vulnerabilities and Exploits

Related Posts

The State of Cybersecurity in 2025: Key Segments, Insights, and Innovations  The State of Cybersecurity in 2025: Key Segments, Insights, and Innovations  The Hacker News
Hackers Target ICTBroadcast Servers via Cookie Exploit to Gain Remote Shell Access Hackers Target ICTBroadcast Servers via Cookie Exploit to Gain Remote Shell Access The Hacker News
FedRAMP at Startup Speed: Lessons Learned FedRAMP at Startup Speed: Lessons Learned The Hacker News
New GodRAT Trojan Targets Trading Firms Using Steganography and Gh0st RAT Code New GodRAT Trojan Targets Trading Firms Using Steganography and Gh0st RAT Code The Hacker News
CISOs Tackle Burnout and Reduce MTTR Without Extra Staff CISOs Tackle Burnout and Reduce MTTR Without Extra Staff The Hacker News
Critical Unpatched SharePoint Zero-Day Actively Exploited, Breaches 75+ Global Organizations Critical Unpatched SharePoint Zero-Day Actively Exploited, Breaches 75+ Global Organizations The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Rapid SSH Worm Exploits Linux Systems with Credential Stuffing
  • Odido Telecom Hacked: 6.2 Million Accounts Compromised
  • Lazarus Group Targets npm and PyPI with Malicious Packages
  • DragonForce Ransomware Group’s Expanding Cartel Operations
  • North Korean Hackers Exploit AI for Enhanced Cyber Attacks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Rapid SSH Worm Exploits Linux Systems with Credential Stuffing
  • Odido Telecom Hacked: 6.2 Million Accounts Compromised
  • Lazarus Group Targets npm and PyPI with Malicious Packages
  • DragonForce Ransomware Group’s Expanding Cartel Operations
  • North Korean Hackers Exploit AI for Enhanced Cyber Attacks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News