An Integer Overflow or Wraparound vulnerability [CWE-190] in FortiOS version 7.6.2 and below, version 7.4.7 and below, version 7.2.10 and below, 7.2 all versions, 6.4 all versions, FortiProxy version 7.6.2 and below, version 7.4.3 and below, 7.2 all versions, 7.0 all versions, 2.0 all versions and FortiPAM version 1.5.0, version 1.4.2 and below, 1.3 all versions, 1.2 all versions, 1.1 all versions, 1.0 all versions SSL-VPN RDP and VNC bookmarks may allow an authenticated user to affect the device SSL-VPN availability via crafted requests.
                
            References
                    | Link | Resource | 
|---|---|
| https://fortiguard.fortinet.com/psirt/FG-IR-24-364 | Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| 
 | 
Configuration 2 (hide)
| 
 | 
Configuration 3 (hide)
| 
 | 
History
                    14 Aug 2025, 01:21
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time | Fortinet fortios Fortinet fortiproxy Fortinet fortipam Fortinet | |
| References | () https://fortiguard.fortinet.com/psirt/FG-IR-24-364 - Vendor Advisory | |
| CPE | cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:* cpe:2.3:o:fortinet:fortipam:*:*:*:*:*:*:*:* cpe:2.3:o:fortinet:fortipam:1.5.0:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:* | 
13 Aug 2025, 17:33
| Type | Values Removed | Values Added | 
|---|---|---|
| Summary | 
 | 
12 Aug 2025, 19:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2025-08-12 19:15
Updated : 2025-08-14 01:21
NVD link : CVE-2025-25248
Mitre link : CVE-2025-25248
CVE.ORG link : CVE-2025-25248
JSON object : View
Products Affected
                fortinet
- fortipam
- fortios
- fortiproxy
CWE
                
                    
                        
                        CWE-190
                        
            Integer Overflow or Wraparound
