Fortinet patched a critical FortiSIEM vulnerability (CVE-2025-64155) allowing unauthenticated remote code execution through command injection in the phMonitor service. The flaw enables full system takeover with privilege escalation from admin to root. While not yet exploited in the wild, a public proof-of-concept exists.

2m read timeFrom arcticwolf.com
Post cover image
Table of contents
Upgrade To Latest Fixed VersionIsolate FortiSIEM Instances From the Internet

Sort: