Lucene search

K
fortinetFortiGuard LabsFG-IR-21-133
HistoryDec 07, 2021 - 12:00 a.m.

FortiWeb - Open redirect due to missing domain whitelisting

2021-12-0700:00:00
FortiGuard Labs
www.fortiguard.com
14
fortiweb
open redirect
whitelisting
http requests
vulnerability
cwe-601

EPSS

0.001

Percentile

22.7%

A URL redirection to untrusted site (‘Open Redirect’) [CWE-601] in FortiWeb may allow an authenticated attacker to use the device as proxy to reach any protected host via crafted HTTP requests.

EPSS

0.001

Percentile

22.7%

Related for FG-IR-21-133