CVE-2025-32756
KEVCRITICAL 9.8EPSS 29.8%
A stack-based buffer overflow vulnerability [CWE-121] in Fortinet FortiVoice versions 7.2.0, 7.0.0 through 7.0.6, 6.4.0 through 6.4.10, FortiRecorder versions 7.2.0 through 7.2.3, 7.0.0 through 7.0.5, 6.4.0 through 6.4.5, FortiMail versions 7.6.0 through 7.6.2, 7.4.0 through 7.4.4, 7.2.0 through 7.2.7, 7.0.0 through 7.0.8, FortiNDR versions 7.6.0, 7.4.0 through 7.4.7, 7.2.0 through 7.2.4, 7.0.0 through 7.0.6, FortiCamera versions 2.1.0 through 2.1.3, 2.0 all versions, 1.1 all versions, allows a remote unauthenticated attacker to execute arbitrary code or commands via sending HTTP requests with specially crafted hash cookie.
- CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS
- 29.81% chance of exploitation in the next 30 days, 98th percentile
- CISA KEV
- added 2025-05-14
- Published
- 2025-05-13
- Updated
- 2026-02-26
Proof-of-concept exploits (5)
- alm6no5/CVE-2025-32756-POC0★ · 2025-06-09
- becrevex/CVE-2025-327560★ · 2025-06-09
- exfil0/CVE-2025-32756-POC4★ · 2025-05-18
- kn0x0x/CVE-2025-32756-POC195★ · 2025-06-13
- shan0ar/cve-2025-327560★ · 2025-07-23