CVE-2025-47857 | Fortinet FortiWeb up to 7.4.8/7.6.3 CLI Command os command injection (FG-IR-25-253 / WID-SEC-2025-1805)
A vulnerability classified as critical has been found in Fortinet FortiWeb up to 7.4.8/7.6.3. The affected element is an unknown function of the component CLI Command Handler. The manipulation leads to os command injection.
This vulnerability is uniquely identified as CVE-2025-47857. Local access is required to approach this attack. No exploit exists.
It is recommended to upgrade the affected component.