Fortinet Fixes Critical FortiSIEM Flaw Allowing Unauthenticated Remote Code Execution Emmie Evans January 14, 2026

Fortinet Fixes Critical FortiSIEM Flaw Allowing Unauthenticated Remote Code Execution

Fortinet has released updates to fix a critical security flaw impacting FortiSIEM that could allow an unauthenticated attacker to achieve code execution on susceptible instances.
The operating system (OS) injection vulnerability, tracked as CVE-2025-64155, is rated 9.4 out of 10.0 on the CVSS scoring system.
“An improper neutralization of special elements used in an OS command (‘OS command

Write a comment
Your email address will not be published. Required fields are marked *
Scroll to Top