FortiWeb Systems Compromised via Webshells After Public PoC Release

Score: 77/100 5 articles 100.0% coherence 2 days ago

Activity Timeline

A Vulnerability in FortiWeb Could Allow for SQL In...
CIS Security Advisories
Jul 08
19:17
Exploits for pre-auth Fortinet FortiWeb RCE flaw r...
BleepingComputer
Jul 11
19:41
New Fortinet FortiWeb hacks likely linked to publi...
BleepingComputer
Jul 16
14:58
Fortinet FortiWeb Instances Hacked With Webshells ...
Cybersecurity News
Jul 16
15:57
FortiWeb Systems Compromised via Webshells After P...
GB Hackers
Primary Article
Jul 17
05:21
FortiWeb Systems Compromised via Webshells After Public PoC Release A widespread cyberattack campaign has successfully compromised dozens of Fortinet FortiWeb instances throughwebshelldeployment, exploiting a critical vulnerability for which proof-of-concept code became publicly available just days ago. The rapid weaponization of the exploit demonstrates the immediate risks organizations face when security flaws become public knowledge. Critical Vulnerability Details and Impact The attacks center aroundCVE-2025-25257, a critical pre-authenticated SQL injection vulnerability affecting Fortinet’s FortiWeb Web Application Firewall systems. This flaw, with a severe CVSS score of 9.6 out of 10, allows unauthenticated attackers to execute unauthorized code remotely by sending specially crafted HTTP requests to vulnerable systems. The vulnerability resides specifically in the FortiWeb Fabric Connector component, which integrates the WAF with other Fortinet security products. Security research...

Cluster AI

Beta Organization

Save to Folder

Choose a folder to save this cluster: