# CVE-2025-64446

## Summary

- **CVE ID:** CVE-2025-64446
- **Severity:** CRITICAL
- **CVSS Score:** 9.4 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:H/RL:O/RC:C)
- **CWE:** CWE-23
- **Published:** Nov 14, 2025
- **Last Modified:** Feb 26, 2026

## Description

A relative path traversal vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.1, FortiWeb 7.6.0 through 7.6.4, FortiWeb 7.4.0 through 7.4.9, FortiWeb 7.2.0 through 7.2.11, FortiWeb 7.0.0 through 7.0.11 may allow an attacker to execute administrative commands on the system via crafted HTTP or HTTPS requests.

## Affected Products

- Fortinet — FortiWeb (8.0.0)
- Fortinet — FortiWeb (7.6.0)
- Fortinet — FortiWeb (7.4.0)
- Fortinet — FortiWeb (7.2.0)
- Fortinet — FortiWeb (7.0.0)

## References

- [CNA](https://fortiguard.fortinet.com/psirt/FG-IR-25-910)
- [CISA-ADP](https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-64446)
- [CISA-ADP](https://github.com/watchtowrlabs/watchTowr-vs-Fortiweb-AuthBypass)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 91.84%
- **EPSS Percentile:** 99.8

## Known Exploited Vulnerabilities (KEV)

- **Date Added:** Nov 14, 2025
- **Due Date:** Nov 21, 2025

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._