A URL redirection to untrusted site ('open redirect') in Fortinet FortiAuthenticator version 6.6.0, version 6.5.3 and below, version 6.4.9 and below may allow an attacker to to redirect users to an arbitrary website via a crafted URL.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://fortiguard.fortinet.com/psirt/FG-IR-23-465 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: fortinet
Published: 2024-06-03T09:50:26.151Z
Updated: 2024-08-01T23:06:25.363Z
Reserved: 2024-01-19T08:23:28.612Z
Link: CVE-2024-23664
Vulnrichment
Updated: 2024-08-01T23:06:25.363Z
NVD
Status : Awaiting Analysis
Published: 2024-06-03T10:15:12.620
Modified: 2024-11-21T08:58:07.350
Link: CVE-2024-23664
Redhat
No data.