Vulnerability Details CVE-2025-25250
An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] vulnerability in Fortinet FortiOS 7.6.0, FortiOS 7.4.0 through 7.4.7, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions, FortiSASE 25.1.c may allow an authenticated user to access full SSL-VPN settings via crafted URL.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 35.7%
CVSS Severity
CVSS v3 Score 4.3
Products affected by CVE-2025-25250
-
cpe:2.3:a:fortinet:fortisase:25.1.75
-
cpe:2.3:o:fortinet:fortios:6.4.0
-
cpe:2.3:o:fortinet:fortios:6.4.1
-
cpe:2.3:o:fortinet:fortios:6.4.10
-
cpe:2.3:o:fortinet:fortios:6.4.11
-
cpe:2.3:o:fortinet:fortios:6.4.12
-
cpe:2.3:o:fortinet:fortios:6.4.13
-
cpe:2.3:o:fortinet:fortios:6.4.14
-
cpe:2.3:o:fortinet:fortios:6.4.15
-
cpe:2.3:o:fortinet:fortios:6.4.16
-
cpe:2.3:o:fortinet:fortios:6.4.17
-
cpe:2.3:o:fortinet:fortios:6.4.2
-
cpe:2.3:o:fortinet:fortios:6.4.3
-
cpe:2.3:o:fortinet:fortios:6.4.4
-
cpe:2.3:o:fortinet:fortios:6.4.5
-
cpe:2.3:o:fortinet:fortios:6.4.6
-
cpe:2.3:o:fortinet:fortios:6.4.7
-
cpe:2.3:o:fortinet:fortios:6.4.8
-
cpe:2.3:o:fortinet:fortios:6.4.9
-
cpe:2.3:o:fortinet:fortios:7.0.0
-
cpe:2.3:o:fortinet:fortios:7.0.1
-
cpe:2.3:o:fortinet:fortios:7.0.10
-
cpe:2.3:o:fortinet:fortios:7.0.11
-
cpe:2.3:o:fortinet:fortios:7.0.12
-
cpe:2.3:o:fortinet:fortios:7.0.13
-
cpe:2.3:o:fortinet:fortios:7.0.14
-
cpe:2.3:o:fortinet:fortios:7.0.15
-
cpe:2.3:o:fortinet:fortios:7.0.16
-
cpe:2.3:o:fortinet:fortios:7.0.17
-
cpe:2.3:o:fortinet:fortios:7.0.18
-
cpe:2.3:o:fortinet:fortios:7.0.2
-
cpe:2.3:o:fortinet:fortios:7.0.3
-
cpe:2.3:o:fortinet:fortios:7.0.4
-
cpe:2.3:o:fortinet:fortios:7.0.5
-
cpe:2.3:o:fortinet:fortios:7.0.6
-
cpe:2.3:o:fortinet:fortios:7.0.7
-
cpe:2.3:o:fortinet:fortios:7.0.8
-
cpe:2.3:o:fortinet:fortios:7.0.9
-
cpe:2.3:o:fortinet:fortios:7.2.0
-
cpe:2.3:o:fortinet:fortios:7.2.1
-
cpe:2.3:o:fortinet:fortios:7.2.10
-
cpe:2.3:o:fortinet:fortios:7.2.11
-
cpe:2.3:o:fortinet:fortios:7.2.12
-
cpe:2.3:o:fortinet:fortios:7.2.13
-
cpe:2.3:o:fortinet:fortios:7.2.2
-
cpe:2.3:o:fortinet:fortios:7.2.3
-
cpe:2.3:o:fortinet:fortios:7.2.4
-
cpe:2.3:o:fortinet:fortios:7.2.5
-
cpe:2.3:o:fortinet:fortios:7.2.6
-
cpe:2.3:o:fortinet:fortios:7.2.7
-
cpe:2.3:o:fortinet:fortios:7.2.8
-
cpe:2.3:o:fortinet:fortios:7.2.9
-
cpe:2.3:o:fortinet:fortios:7.4.0
-
cpe:2.3:o:fortinet:fortios:7.4.1
-
cpe:2.3:o:fortinet:fortios:7.4.2
-
cpe:2.3:o:fortinet:fortios:7.4.3
-
cpe:2.3:o:fortinet:fortios:7.4.4
-
cpe:2.3:o:fortinet:fortios:7.4.5
-
cpe:2.3:o:fortinet:fortios:7.4.6
-
cpe:2.3:o:fortinet:fortios:7.4.7
-
cpe:2.3:o:fortinet:fortios:7.6.0