CVE-2025-58692
EUVD-2025-19801918.11.2025, 17:16
An improper neutralization of special elements used in an SQL Command ("SQL Injection") vulnerability [CWE-89] vulnerability in Fortinet FortiVoice 7.2.0 through 7.2.2, FortiVoice 7.0.0 through 7.0.7 allows an authenticated attacker to execute unauthorized code or commands via specifically crafted HTTP or HTTPS requests.Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| fortinet | fortivoice | 7.0.0 ≤ 𝑥 < 7.0.8 |
| fortinet | fortivoice | 7.2.0 ≤ 𝑥 < 7.2.3 |
𝑥
= Vulnerable software versions