Critical stack-based buffer overflow vulnerability in multiple Fortinet server products that allows remote unauthenticated code execution via crafted HTTP requests. This vulnerability is actively exploited in the wild and affects enterprise-grade security and communications infrastructure commonly exposed to the internet.
Data Source: CIRCL
Confidence: HIGH
Exploitation Method: DIRECT_NETWORK
CVE Published: 2025-05-13
Added to CISA KEV: 2025-05-14 1 DAY BETWEEN CVE AND KEV
CVE-2025-32756 is a critical security vulnerability affecting multiple Fortinet products, which has been confirmed as exploited in the wild [1] [6].
Attack Type, Unauthenticated ; Known Exploited, Yes ; CVSSv3 Score, 9.6 ; Impact, Execute unauthorized code or commands ; CVE ID, CVE-2025-32756. ... A stack-based buffer overflow vulnerability in FortiVoice, FortiMail, FortiNDR, FortiRecorder and FortiCamera may allow remote code execution. See aff…
A remote unauthenticated attacker to execute arbitrary code or commands via sending HTTP requests with specially crafted hash cookie. ... A remote unauthenticated attacker can exploit this vulnerability to execute arbitrary code or commands via HTTP requests with specially crafted hash cookie. The v…
Proof of Concept for CVE-2025-32756 - A critical stack-based buffer overflow vulnerability affecting multiple Fortinet products. ... CVE-2025-32756: Fortinet RCE PoC A proof-of-concept for the critical stack-based buffer overflow vulnerability (CVE-2025-32756) affecting Fortinet products.
CVSS scores for CVE-2025-32756 ... CWE ids for CVE-2025-32756 CWE-121 Stack-based Buffer Overflow A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).
CVE-2025-32756 is a critical, stack-based buffer overflow vulnerability with a CVSS Score of 9.8 affecting Fortinet FortiVoice, FortiMail, FortiNDR, ... CVE-2025-32756 is a critical, stack-based buffer overflow vulnerability with a CVSS Score of 9.8 affecting Fortinet FortiVoice, FortiMail, FortiNDR…
On 5/13/25, Fortinet disclosed CVE-2025-32756, an unauthenticated stack-based buffer overflow affecting multiple FortiNet products. Learn more!…
Overview CVE-2025-32756 is a critical stack-based buffer overflow vulnerability affecting several Fortinet security appliances, including FortiVoice, FortiRecorder, FortiMail, FortiNDR, and FortiCamera. This vulnerability can allow remote, unauthenticated attackers to execute arbitrary code or comma…