Unrated severityNVD Advisory· Published Dec 9, 2025· Updated Jan 14, 2026
CVE-2025-54838
CVE-2025-54838
Description
An Incorrect Authorization vulnerability [CWE-863] in FortiPortal 7.4.0 through 7.4.5 may allow an authenticated attacker to reboot a shared FortiGate device via crafted HTTP requests.
Affected products
1- Fortinet/FortiPortalv5cpe:2.3:a:fortinet:fortiportal:7.4.5:*:*:*:*:*:*:*Range: 7.4.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.