CVE-2018-13384

A Host Header Redirection vulnerability in Fortinet FortiOS all versions below 6.0.5 under SSL VPN web portal allows a remote attacker to potentially poison HTTP cache and subsequently redirect SSL VPN web portal users to arbitrary web domains.
References
Link Resource
https://fortiguard.com/advisory/FG-IR-19-002 Mitigation Vendor Advisory
Configurations

Configuration 1

cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:*

Information

Published : 2019-06-04 09:29

Updated : 2019-06-05 02:26


NVD link : CVE-2018-13384

Mitre link : CVE-2018-13384

Products Affected
No products.
CWE
CWE-601

URL Redirection to Untrusted Site ('Open Redirect')