Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2025-25257 — Exploiting the CVE-2025-25257 vulnerability in FortiWeb. This repository demonstrates secure pre-authenticated SQL injection. | Kitploit
Tools/GitHubGitHub/aitorfirm/cve-2025-25257
Vulnerability AnalysisExploitationWeb Application ExploitationWeb SecurityPenetration TestingLearning & Education
GitHubaitorfirm/cve-2025-25257

CVE-2025-25257

Exploiting the CVE-2025-25257 vulnerability in FortiWeb. This repository demonstrates secure pre-authenticated SQL injection.

View Repository
121 year agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

Table of Contents

  • Overview
  • Vulnerability Details
  • Proof of Concept (PoC)
  • Trolled2
  • Trolled3

Overview

CVE-2025-25257 is a pre-authentication SQL Injection vulnerability in Fortinet FortiWeb Fabric Connector versions 7.0 through 7.6.x.
This flaw allows attackers to inject malicious SQL commands into the vulnerable API endpoint, potentially leading to Remote Code Execution (RCE).

This repository contains an PoC demonstrating the SQL injection vector in a safe and controlled manner.
Its open source for you to exploit.-


Vulnerability Details

  • Name: FortiWeb Fabric Connector SQL Injection
  • CVE: CVE-2025-25257
  • Affected Versions: FortiWeb Fabric Connector 7.0 through 7.6.x
  • Severity: Critical (CVSS Score 9.8)
  • Impact: Pre-authentication SQL Injection, leading to Remote Code Execution
  • Attack Vector: HTTP API /api/fabric/device/status
  • Exploitation: Requires malicious Authorization: Bearer header with crafted payload

Proof of Concept (PoC)

The following curl command demonstrates the SQL Injection detection you can executing harmful payloads:

curl -k -H "Authorization: Bearer aaa' OR '1'='1" \
  https://<fortiweb-ip>/api/fabric/device/status
Download Tool