Medium severity6.9NVD Advisory· Published Mar 10, 2026· Updated Jun 17, 2026
CVE-2025-68482
CVE-2025-68482
Description
A improper certificate validation vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.4, FortiAnalyzer 7.4.0 through 7.4.8, FortiAnalyzer 7.2 all versions, FortiAnalyzer 7.0 all versions, FortiAnalyzer 6.4 all versions, FortiManager 7.6.0 through 7.6.4, FortiManager 7.4.0 through 7.4.8, FortiManager 7.2 all versions, FortiManager 7.0 all versions, FortiManager 6.4 all versions may allow a remote unauthenticated attacker to view confidential information via a man in the middle [MiTM] attack.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8cpe:2.3:a:fortinet:fortianalyzer:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:fortinet:fortianalyzer:*:*:*:*:*:*:*:*range: >=6.4.0,<7.4.9
- cpe:2.3:a:fortinet:fortianalyzercloud:7.6.2:*:*:*:*:*:*:*range: 7.6.2
- cpe:2.3:o:fortinet:fortianalyzer:7.6.4:*:*:*:*:*:*:*range: 7.6.0
- (no CPE)range: 7.6.0 - 7.6.4, 7.4.0 - 7.4.8, 7.2.x, 7.0.x, 6.4.x
cpe:2.3:a:fortinet:fortimanager:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:fortinet:fortimanager:*:*:*:*:*:*:*:*range: >=6.4.0,<7.4.9
- cpe:2.3:o:fortinet:fortimanager:7.6.4:*:*:*:*:*:*:*range: 7.6.0
- (no CPE)range: 7.6.0 - 7.6.4, 7.4.0 - 7.4.8, 7.2.x, 7.0.x, 6.4.x
- cpe:2.3:a:fortinet:fortimanagercloud:7.6.3:*:*:*:*:*:*:*Range: 7.6.2
Patches
Vulnerability mechanics
References
1- fortiguard.fortinet.com/psirt/FG-IR-26-078nvdVendor Advisory
News mentions
0No linked articles in our index yet.