A url redirection to untrusted site ('open redirect') in Fortinet FortiOS version 7.2.0 through 7.2.3, FortiOS version 7.0.0 through 7.0.9, FortiOS versions 6.4.0 through 6.4.12, FortiOS all versions 6.2, FortiOS all versions 6.0, FortiProxy version 7.2.0 through 7.2.2, FortiProxy version 7.0.0 through 7.0.8, FortiProxy all versions 2.0, FortiProxy all versions 1.2, FortiProxy all versions 1.1, FortiProxy all versions 1.0 allows an authenticated attacker to execute unauthorized code or commands via specially crafted requests.
References
Link | Resource |
---|---|
https://fortiguard.com/psirt/FG-IR-22-479 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
18 Apr 2023, 18:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-04-11 17:15
Updated : 2024-02-04 23:37
NVD link : CVE-2023-22641
Mitre link : CVE-2023-22641
CVE.ORG link : CVE-2023-22641
JSON object : View
Products Affected
fortinet
- fortios
- fortiproxy
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')