An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability [CWE-78] vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.1, FortiWeb 7.6.0 through 7.6.5, FortiWeb 7.4.0 through 7.4.10, FortiWeb 7.2.0 through 7.2.11, FortiWeb 7.0.0 through 7.0.11 may allow an authenticated attacker to execute unauthorized code on the underlying system via crafted HTTP requests or CLI commands.
Use CWE-78, Fortinet vendor hub and Fortiweb product page to widen CVE-2025-58034 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-24858, CVE-2026-24017 and CVE-2025-64447 for nearby disclosures in the same product family.