Threats Tagged 'cve-2025-59922'
View all threats tagged with 'cve-2025-59922'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2025-59922'
Click on any threat for detailed analysis and mitigation recommendations
CVE-2025-59922 is a medium-severity SQL Injection vulnerability affecting multiple versions of Fortinet FortiClientEMS. It allows an authenticated attacker with at least read-only admin permissions to execute unauthorized SQL commands via crafted HTTP/HTTPS requests. Exploitation can lead to full compromise of confidentiality, integrity, and availability of the affected system. No user interaction is required, but authentication with elevated privileges is necessary. There are no known exploits in the wild yet, and no patches have been linked at the time of publication. European organizations using FortiClientEMS for endpoint management are at risk, especially in countries with high Fortinet market penetration. Mitigation requires strict access control, monitoring for unusual SQL activity, and prompt application of vendor patches once available. The vulnerability’s CVSS score is 6.8, reflecting significant impact but requiring authenticated access. Countries like Germany, France, the UK, and the Netherlands are likely most affected due to their extensive use of Fortinet products and critical infrastructure reliance on endpoint security management. Join the discussion | CVE Database V5 | 01/13/2026, 16:32:28 UTC Added: 01/13/2026, 16:56:32 UTC |
Showing 1 to 1 of 1 result