VYPR
High severity7.2NVD Advisory· Published Jun 10, 2025· Updated Aug 31, 2026

CVE-2025-31104

CVE-2025-31104

Description

A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiADC 7.6.0 through 7.6.1, FortiADC 7.4.0 through 7.4.6, FortiADC 7.2.0 through 7.2.7, FortiADC 7.1.0 through 7.1.4, FortiADC 7.0 all versions, FortiADC 6.2 all versions, FortiADC 6.1 all versions, FortiADC 6.0 all versions, FortiADC 5.4 all versions, FortiADC 5.3 all versions, FortiADC 5.2 all versions, FortiADC 5.1 all versions, FortiADC 5.0 all versions, FortiADC 4.8 all versions, FortiADC 4.7 all versions, FortiADC 4.6 all versions, FortiADC 4.5 all versions, FortiADC 4.4 all versions, FortiADC 4.3 all versions, FortiADC 4.2 all versions, FortiADC 4.1 all versions, FortiADC 4.0 all versions, FortiADC 3.2 all versions, FortiADC 3.1 all versions, FortiADC 3.0 all versions may allow attacker to execute unauthorized code or commands via

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Fortinet/Fortiadc 200dcpe-rescue2 versions
    cpe:2.3:h:fortinet:fortiadc:7.6.1:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:h:fortinet:fortiadc:7.6.1:*:*:*:*:*:*:*range: 7.6.0
    • cpe:2.3:a:fortinet:fortiadc:*:*:*:*:*:*:*:*range: >=6.1.0,<7.1.5
  • Range: 7.6.0 through 7.6.1, 7.4.0 through 7.4.6, 7.2.0 through 7.2.7, 7.1.0 through 7.1.4, 7.0, 6.2, 6.1, 6.0, 5.4, 5.3, 5.2, 5.1, 5.0, 4.8, 4.7, 4.6, 4.5, 4.4, 4.3, 4.2, 4.1, 4.0, 3.2, 3.1, 3.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.