Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form

CISA Warns of Fortinet FortiWeb WAF Vulnerability Exploited in the Wild to Gain Admin Access

Posted on November 17, 2025November 17, 2025 By CWS

CISA has issued an pressing alert a few important vulnerability in Fortinet’s FortiWeb Net Software Firewall (WAF), actively exploited by menace actors to grab administrative management of affected techniques.

Tracked as CVE-2025-64446, the flaw stems from a relative path traversal challenge (CWE-23) that allows unauthenticated attackers to execute arbitrary administrative instructions by way of specifically crafted HTTP or HTTPS requests.

Added to CISA’s Identified Exploited Vulnerabilities (KEV) catalog on November 14, 2025, the vulnerability carries a due date of November 21 for federal businesses to use mitigations or discontinue use.

Fortinet’s advisory (FG-IR-25-910) confirms the difficulty impacts a number of FortiWeb variations, together with these working firmware as much as 7.4.7 and seven.6.5. Attackers can exploit it with out authentication, probably main to finish system compromise, knowledge exfiltration, or deployment of malware.

Whereas it’s unknown whether or not the vulnerability has been tied to ransomware campaigns, safety researchers have reported real-world exploitation within the wild concentrating on organizations in sectors like finance and healthcare.

FortiWeb WAF Vulnerability Exploited within the Wild

“This path traversal bug is a basic however harmful oversight in file dealing with,” mentioned cybersecurity skilled Maria Chen, a vulnerability researcher at a number one menace intelligence agency. “Unauthenticated entry to admin features turns a WAF meant to guard internet apps right into a backdoor for attackers.”

Fortinet urges instant patching to the newest variations, corresponding to 7.4.8 or 7.6.6, and recommends limiting administrative entry through community segmentation.

For cloud-deployed situations, CISA advises adherence to Binding Operational Directive (BOD) 22-01, which mandates well timed remediation of vulnerabilities in federal techniques.

Organizations unable to patch ought to isolate affected gadgets and monitor for indicators of compromise, corresponding to uncommon HTTP site visitors patterns or unauthorized command execution.

The flaw highlights ongoing dangers in community safety home equipment, that are prime targets for superior persistent threats (APTs). As exploitation ramps up, specialists warn that unpatched FortiWeb deployments may amplify broader assault chains, corresponding to lateral motion in enterprise networks. Fortinet has not disclosed the preliminary discovery methodology however emphasizes that no buyer knowledge was breached throughout its investigation.

With the patch deadline looming, affected customers are racing to replace. Delays may expose delicate infrastructure to persistent threats, underscoring the necessity for proactive vulnerability administration in an period of zero-day exploits.

Observe us on Google Information, LinkedIn, and X for each day cybersecurity updates. Contact us to function your tales.

Cyber Security News Tags:Access, Admin, CISA, Exploited, Fortinet, FortiWeb, Gain, Vulnerability, WAF, Warns, Wild

Post navigation

Previous Post: DoorDash Says Personal Information Stolen in Data Breach
Next Post: Hackers Leverages Microsoft Entra Tenant Invitations to Launch TOAD Attacks

Related Posts

Threat Actors Leveraging Windows and Linux Vulnerabilities in Real-world Attacks to Gain System Access Cyber Security News
PhpSpreadsheet Library Vulnerability Enables Attackers to Feed Malicious HTML Input Cyber Security News
MuddyWater Using New Malware Toolkit to Deliver Phoenix Backdoor Malware to International Organizations Cyber Security News
Linux Legitimate System Behaviours Weaponized to Harvest Secrets from Shared Environments Cyber Security News
Phishing Attacks Using AI-Powered Platforms to Misleads Users and Evades Security Tools Cyber Security News
Next.js Cache Poisoning Vulnerability Let Attackers Trigger DoS Condition Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Leveraging OSINT Tools for Enhanced Cybersecurity Threat Intelligence
  • Data Breach at Texas Gas Station Operator Exposes Info of 377,000+ Customers
  • MuddyWater Launches RustyWater RAT via Spear-Phishing Across Middle East Sectors
  • Europol Arrests 34 Black Axe Members in Spain Over €5.9M Fraud and Organized Crime
  • New MacSync Stealer Uses Signed macOS App to Evade Gatekeeper and Steal Data

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Leveraging OSINT Tools for Enhanced Cybersecurity Threat Intelligence
  • Data Breach at Texas Gas Station Operator Exposes Info of 377,000+ Customers
  • MuddyWater Launches RustyWater RAT via Spear-Phishing Across Middle East Sectors
  • Europol Arrests 34 Black Axe Members in Spain Over €5.9M Fraud and Organized Crime
  • New MacSync Stealer Uses Signed macOS App to Evade Gatekeeper and Steal Data

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark