CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.2. It affects Fortinet. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.
CVE
CVE-2025-49813
Severity
HIGH
CVSS
7.2
EPSS
1.09%
Fortinet
Original NVD Description
An improper neutralization of special elements used in an OS Command ("OS Command Injection") vulnerability [CWE-78] in Fortinet FortiADC version 7.2.0 and before 7.1.1 allows a remote and authenticated attacker with low privilege to execute unauthorized code via specifically crafted HTTP parameters.
Related CVEs
Other vulnerabilities affecting the same vendor(s)