CVE-2025-48840 | Fortinet FortiWeb up to 7.0.12/7.2.12/7.4.8/7.6.3 authentication spoofing (FG-IR-26-097)
A vulnerability was found in Fortinet FortiWeb up to 7.0.12/7.2.12/7.4.8/7.6.3 and classified as critical. The impacted element is an unknown function. Such manipulation leads to authentication bypass by spoofing.
This vulnerability is referenced as CVE-2025-48840. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.