WHAT ARE YOU LOOKING FOR?

Raleigh, NC

32°F
Scattered Clouds Humidity: 79%
Wind: 2.06 M/S

Fortinet and Ivanti Release August 2025 Security Fixes

Fortinet and Ivanti Release August 2025 Security Fixes

Fortinet and Ivanti have released critical security updates as part of their August 2025 Patch Tuesday, addressing multiple vulnerabilities across their products. 

Fortinet Highlights 

  • Issued 14 advisories, including CVE-2025-25256, a critical FortiSIEM flaw allowing remote code execution via crafted CLI requests. A public exploit exists, though no malicious use has been confirmed. 
  • CVE-2025-52970 enables authentication bypass in FortiWeb, letting attackers log in as any user. 
  • CVE-2024-26009 affects several Fortinet products and could let attackers take control of managed devices if they know the FortiManager serial number. 
  • Additional medium-severity bugs were patched across FortiManager, FortiWeb, FortiOS, and more, many allowing arbitrary code execution. 

Ivanti Highlights 

  • Three advisories cover high-severity RCE flaws in Ivanti Avalanche and a medium-severity issue in vADC that could let attackers reset admin passwords. 
  • Ivanti Connect Secure and related products were patched for high-severity unauthenticated DoS vulnerabilities and medium-severity flaws enabling DoS and file access. 
  • No active exploitation has been reported, but users are urged to apply patches promptly to avoid potential threats. 
  • Both companies stress the importance of updating systems immediately to prevent future attacks. 

Found this article interesting? Follow us on X(Twitter) ,Threads and FaceBook to read more exclusive content we post. 

Image

With Cybersecurity Insights, current news and event trends will be captured on cybersecurity, recent systems / cyber-attacks, artificial intelligence (AI), technology innovation happening around the world; to keep our viewers fast abreast with the current happening with technology, system security, and how its effect our lives and ecosystem. 

Please fill the required field.