CVE-2025-61848

HIGH

FortiManager and FortiAnalyzer - Authenticated SQL Injection via JSON RPC API

Title source: llm
STIX 2.1

Description

An improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.4, FortiAnalyzer 7.4.0 through 7.4.8, FortiAnalyzer 7.2 all versions, FortiAnalyzer 7.0 all versions, FortiAnalyzer Cloud 7.6.0 through 7.6.4, FortiAnalyzer Cloud 7.4.0 through 7.4.8, FortiAnalyzer Cloud 7.2 all versions, FortiAnalyzer Cloud 7.0 all versions, FortiManager 7.6.0 through 7.6.4, FortiManager 7.4.0 through 7.4.8, FortiManager 7.2 all versions, FortiManager 7.0 all versions, FortiManager Cloud 7.6.0 through 7.6.4, FortiManager Cloud 7.4.0 through 7.4.8, FortiManager Cloud 7.2 all versions, FortiManager Cloud 7.0 all versions may allow a privileged authenticated attacker to execute unauthorized code or commands via JSON RPC API

References (1)

Core 1

Scores

CVSS v3 7.2
EPSS 0.0004
EPSS Percentile 12.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-89
Status published
Products (8)
fortinet/fortianalyzer 7.0.0 - 7.4.9
Fortinet/FortiAnalyzer 7.6.0 - 7.6.3
Fortinet/FortiAnalyzer Cloud 7.6.2 - 7.6.3
fortinet/fortianalyzer_cloud 7.0.0 - 7.4.9
fortinet/fortimanager 7.0.0 - 7.4.9
Fortinet/FortiManager 7.6.0 - 7.6.3
Fortinet/FortiManager Cloud 7.6.2 - 7.6.4
fortinet/fortimanager_cloud 7.0.0 - 7.4.9
Published Apr 14, 2026
Tracked Since Apr 14, 2026