CNNVD-202512-1165 Information

CNNVD ID

CNNVD-202512-1165

CVE-2025-64153

  • CNNVD Published: 2025-12-09

Description (Chinese)

Fortinet FortiExtender是美国飞塔(Fortinet)公司的一款无线WAN(广域网)扩展器设备。 Fortinet FortiExtender 7.6.0版本至7.6.3版本、7.4.0版本至7.4.7版本、7.2所有版本和7.0所有版本存在操作系统命令注入漏洞,该漏洞源于OS命令注入,可能导致执行任意代码。

Description (English)

Fortinet FortiExtender is a wireless WAN extension for Fortinet. Fortinet FortiExtender, versions 7.6.0, 7.4.0, 7.2 and 7.0, all have an operational system command-injecting loophole that originates from an OS-injection and may lead to the enforcement of arbitrary codes.

Hazard Level

Medium

Vulnerability Type

操作系统命令注入

Affected Vendor

飞塔

Published

2025-12-09

Last Modified

2026-02-24

References

https://fortiguard.fortinet.com/psirt/FG-IR-25-739

Patch

https://fortiguard.fortinet.com/psirt/FG-IR-25-739

Share on: