CVE-2025-24471
published 2025-06-10CVE-2025-24471: An Improper Certificate Validation vulnerability [CWE-295] in FortiOS version 7.6.1 and below, version 7.4.7 and below may allow an EAP verified remote user to…
PriorityP335medium6.5CVSS 3.1
AVNACLPRLUINSUCNIHAN
EPSS
0.32%
24.2th percentile
An Improper Certificate Validation vulnerability [CWE-295] in FortiOS version 7.6.1 and below, version 7.4.7 and below may allow an EAP verified remote user to connect from FortiClient via revoked certificate.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fortinet | forticlient | — | — |
| fortinet | fortios | — | — |
| fortinet | fortios | >= 7.4.0 < 7.4.8 | 7.4.8 |
| fortinet | fortios | 7.4.0 – 7.4.7 | — |
| fortinet | fortios | >= 7.6.0 < 7.6.2 | 7.6.2 |
| fortinet | fortios | 7.6.0 – 7.6.1 | — |
| fortinet | fortisase | — | — |
| fortinet | fortisase | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Fortinet
eap-cert-auth bypass via revoked certificate
vendor_fortinet·2025-06-10·CVSS 6.5
CVE-2025-24471 [MEDIUM] CWE-295 eap-cert-auth bypass via revoked certificate
FG-IR-24-544: eap-cert-auth bypass via revoked certificate
An Improper Certificate Validation vulnerability [CWE-295] in FortiOS version 7.6.1 and below, version 7.4.7 and below may allow an EAP verified remote user to connect from FortiClient via revoked certificate.
CVEs: CVE-2025-24471
CWEs: CWE-295
CVSS: 6.5 (medium)
Affected products: FortiClient, FortiOS, FortiSase
GHSA
GHSA-47gg-69h8-fx9p: An Improper Certificate Validation vulnerability [CWE-295] in FortiOS version 7
ghsa_unreviewed·2025-06-10
CVE-2025-24471 [MEDIUM] CWE-295 GHSA-47gg-69h8-fx9p: An Improper Certificate Validation vulnerability [CWE-295] in FortiOS version 7
An Improper Certificate Validation vulnerability [CWE-295] in FortiOS version 7.6.1 and below, version 7.4.7 and below may allow an EAP verified remote user to connect from FortiClient via revoked certificate.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-06-10
Published