CVE-2022-42475 - Vulnerability Details

Threat entity extracted from intelligence sources

Frequency
9
occurrences
First Seen
November 17, 2025
Last Seen
June 18, 2026

CVE-2022-42475 is a vulnerability tracked across 7 threat clusters and 9 intelligence report mentions on ThreatCluster. First observed November 17, 2025; most recent activity June 18, 2026.

Related Threat Clusters

  • FortiWeb WAF Vulnerability Enables Full Admin Control Exploitation

    A critical vulnerability in FortiWeb Web Application Firewall (WAF) has been actively exploited, allowing attackers to gain full administrative access to affected systems. Organizations using FortiWeb are at risk of…

    100 articles · Updated November 15, 2025
  • Operation Escaneo Targets Latin American Critical Infrastructure

    Operation Escaneo is a coordinated cyberattack attributed to the MexicanMafia group, targeting critical infrastructure across Latin America, primarily Mexico. The campaign, which spanned from 2025 to 2026, utilized…

    4 articles · Updated June 18, 2026
  • Over 10,000 Fortinet Firewalls Vulnerable to 2FA Bypass Exploits

    More than 10,000 Fortinet firewalls remain exposed to a critical two-factor authentication bypass vulnerability (CVE-2020-12812) that has been actively exploited. This flaw, first disclosed in July 2020, continues to…

    6 articles · Updated January 5, 2026
  • Singapore Telcos Targeted by UNC3886 Cyberattack

    In July 2025, an advanced persistent threat actor known as UNC3886 targeted Singapore's four telecommunications companies, compromising critical infrastructure. The attack was detected by the Infocomm Media Development…

    78 articles · Updated February 9, 2026
  • Fortinet Addresses Critical SSO Authentication Bypass Vulnerabilities

    Fortinet has released security updates for critical vulnerabilities in FortiOS, FortiWeb, FortiProxy, and FortiSwitchManager that could allow attackers to bypass FortiCloud SSO authentication. The vulnerabilities,…

    3 articles · Updated December 10, 2025
  • Critical Vulnerabilities in Fortinet FortiWeb Actively Exploited

    Fortinet's FortiWeb web application firewall has been compromised by two critical vulnerabilities, CVE-2025-64446 and CVE-2025-58034, both of which are under active exploitation. The first vulnerability allows…

    74 articles · Updated November 28, 2025
  • Over 25,000 Fortinet Devices Vulnerable to Attacks via FortiCloud SSO

    More than 25,000 Fortinet devices with FortiCloud SSO enabled are exposed to remote attacks due to a critical authentication bypass vulnerability tracked as CVE-2025-59718. The U.S. has the highest number of affected…

    2 articles · Updated December 22, 2025

Recent Intelligence Reports

  • Operation Escaneo Signals Shift in LatAm Threat Landscape — Darkreading · June 18, 2026
  • LATAM Infrastructure Hit by Fortinet and Ivanti Exploits — Infosecurity-Magazine · June 18, 2026
  • Operation Escaneo: Infrastructure Exposure, TTP Analysis, and Attribution Assessment of an ... — Cloudsek · June 17, 2026
  • UNC3886 Cyber Espionage Targets Singapore Telecoms — Technadu · February 9, 2026
  • Over 10K Fortinet firewalls exposed to actively exploited 2FA bypass — Bleepingcomputer · January 2, 2026
  • Over 25,000 FortiCloud SSO devices exposed to remote attacks — Bleepingcomputer · December 19, 2025
  • Fortinet warns of critical FortiCloud SSO login auth bypass flaws — Bleepingcomputer · December 9, 2025
  • Fortinet warns of new FortiWeb zero — Bleepingcomputer · November 18, 2025

CVSS v3.1 Breakdown