You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
This week, critical vulnerability was disclosed in Fortinet FortiWeb(versions 7.6.3 and below, versions 7.4.7 and below, versions 7.2.10 and below, and 7.0.10 and below), linked to improper parameter handling that could allow unauthorized access.
12
+
13
+
14
+
**Key Findings**
15
+
16
+
* Fortinet FortiWeb (CVE-2025-52970): A vulnerability may allow an unauthenticated remote attacker with access to non-public information to log in as any existing user on the device via a specially crafted request.
17
+
18
+
**Impact**
19
+
Exploitation could allow an unauthenticated attacker to impersonate any existing user on the device, potentially enabling them to modify system settings or exfiltrate sensitive information, posing a serious security risk. Upgrading to the latest vendor-released version is strongly recommended.
<td>Command Injection - Common Attack Commands Args</td>
32
+
<td>Beta detection. This will be merged into the original rule "Command Injection - Common Attack Commands (id: 89557ce9b26e4d4dbf29e90c28345b9b)"</td>
33
+
</tr>
34
+
<tr>
35
+
<td>2025-09-01</td>
36
+
<td>2025-09-08</td>
37
+
<td>Log</td>
38
+
<td>100617</td>
39
+
<td>
40
+
<RuleIDid="cd528243d6824f7ab56182988230a75b" />
41
+
</td>
42
+
<td>Next.js - SSRF - CVE:CVE-2025-57822</td>
43
+
<td>This is a New Detection</td>
44
+
</tr>
45
+
<tr>
46
+
<td>2025-09-01</td>
47
+
<td>2025-09-08</td>
48
+
<td>Log</td>
49
+
<td>100659_BETA</td>
50
+
<td>
51
+
<RuleIDid="503b337dac5c409d8f833a6ba22dabf1" />
52
+
</td>
53
+
<td>Common Payloads for Server-Side Template Injection - Beta</td>
54
+
<td>Beta detection. This will be merged into the original rule “Common Payloads for Server-Side Template Injection (id: 21c7a963e1b749e7b1753238a28a42c4)"</td>
0 commit comments