Fortinet patches critical FortiSIEM flaw enabling unauthenticated remote code execution

1 min read
Source: The Hacker News
Fortinet patches critical FortiSIEM flaw enabling unauthenticated remote code execution
Photo: The Hacker News
TL;DR Summary

Fortinet released patches for FortiSIEM to fix CVE-2025-64155, an unauthenticated OS command injection that could let an attacker execute code via crafted requests to the phMonitor service on port 7900, potentially enabling a reverse shell and root-level control. The flaw affects multiple FortiSIEM versions; users should upgrade to fixed releases or restrict access to port 7900 as a workaround. The advisory also patches a separate FortiFone vulnerability (CVE-2025-47855).

Share this article

Reading Insights

Total Reads

0

Unique Readers

13

Time Saved

2 min

vs 3 min read

Condensed

87%

54368 words

Want the full story? Read the original article

Read on The Hacker News