Related Threat Clusters
-
Fortinet FortiWeb Zero-Day Vulnerability Exploited for Admin Account Hijacking
A critical vulnerability in Fortinet's FortiWeb has been actively exploited to create unauthorized admin accounts. Organizations may have been unaware of the security patch that addressed this issue, leaving them…
4 articles · Updated November 14, 2025 -
FortiWeb WAF Vulnerability Enables Full Admin Control Exploitation
A critical vulnerability in FortiWeb Web Application Firewall (WAF) has been actively exploited, allowing attackers to gain full administrative access to affected systems. Organizations using FortiWeb are at risk of…
100 articles · Updated November 15, 2025 -
Fortinet FortiWeb Vulnerabilities Enable Potential Takeover
Fortinet has disclosed critical vulnerabilities in its FortiWeb web application firewall, allowing attackers to execute arbitrary code and potentially take over affected systems. The vulnerabilities, identified as…
3 articles · Updated August 14, 2026 -
FortiWeb Vulnerabilities Exploited: Path Traversal and OS Command Injection
Two vulnerabilities in FortiWeb have been identified, both exploited in the wild. The first, a relative path traversal vulnerability (CWE-23), allows unauthenticated attackers to execute administrative commands via…
2 articles · Updated June 17, 2026 -
GreyNoise Report Reveals Early Warning Signals for Edge Device Vulnerabilities
GreyNoise Intelligence has released a report indicating that spikes in malicious activity often precede the disclosure of new vulnerabilities in edge devices. The study tracked 147.8 million sessions over 103 days,…
13 articles · Updated April 20, 2026 -
Critical Vulnerabilities in Fortinet Products Allow Unauthorized Access
Fortinet has disclosed multiple vulnerabilities affecting its products, including FortiWeb, FortiManager, and FortiClientWindows. The most critical, CVE-2026-26035, allows remote unauthenticated access to FortiWeb…
2 articles · Updated August 14, 2026 -
Multiple Vulnerabilities in FortiCloud SSO Authentication Exposed
Fortinet reported two vulnerabilities affecting FortiOS, FortiManager, FortiAnalyzer, and FortiProxy related to FortiCloud SSO authentication. The first vulnerability, an Authentication Bypass (CWE-288), allows…
3 articles · Updated June 22, 2026 -
Metasploit Framework Targets FortiWeb Zero-Day Vulnerabilities
The Metasploit Framework has introduced a new exploit module specifically designed for recently disclosed zero-day vulnerabilities in Fortinet's FortiWeb Web Application Firewall. This update allows security…
3 articles · Updated November 22, 2025 -
Multiple Vulnerabilities Discovered in Cybersecurity Software
CVE-2025-64756 identifies a command injection vulnerability in the glob CLI affecting versions 10.3.7 to 11.0.3. CVE-2025-64446 reveals a relative path traversal vulnerability in Fortinet FortiWeb versions 8.0.0 to…
19 articles · Updated November 18, 2025 -
Over 10,000 Fortinet Firewalls Vulnerable to 2FA Bypass Exploits
More than 10,000 Fortinet firewalls remain exposed to a critical two-factor authentication bypass vulnerability (CVE-2020-12812) that has been actively exploited. This flaw, first disclosed in July 2020, continues to…
6 articles · Updated January 5, 2026
Recent Intelligence Reports
- CVE-2026-26035 — www.fortiguard.com · August 14, 2026
- Fortinet FortiWeb-Schwachstellen ermöglichen Übernahme — Borncity · August 14, 2026
- Fortinet FortiWeb: Attackers can log in with any credentials — Heise.De · August 14, 2026
- FG-IR-25-647 — fortiguard.fortinet.com · June 22, 2026
- FG-IR-25-647 — www.fortiguard.com · June 22, 2026
- FG-IR-26-060 — www.fortiguard.com · June 22, 2026
- FG IR 25 910 — www.fortiguard.com · June 17, 2026
- FG IR 25 513 — fortiguard.fortinet.com · June 17, 2026