CVE-2025-54838

Publication date

2025-12-09 17:18:48

Family

fortinet

State

PUBLISHED

Description

An Incorrect Authorization vulnerability [CWE-863] in FortiPortal 7.4.0 through 7.4.5 may allow an authenticated attacker to reboot a shared FortiGate device via crafted HTTP requests.