CVE-2026-25815 describes a low-severity vulnerability in Fortinet FortiOS through version 7.6.6, allowing attackers to decrypt LDAP credentials from device configuration files due to a shared default encryption key. This local attack requires high complexity and could lead to a low impact on confidentiality. While the vendor considers it a misconfiguration, it has been exploited in the wild since December 2025. There are no public exploits or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 0, <= 7.6.6CPE match | cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.