Home FortiOS all versions below 6.0.5
affected
Description
A Host Header Redirection vulnerability in Fortinet FortiOS all versions below 6.0.5 under SSL VPN web portal allows a remote attacker to potentially poison HTTP cache and subsequently redirect SSL VPN web portal users to arbitrary web domains.
Problem types
Improper Access Control
Product status
References
fortiguard.com/advisory/FG-IR-19-002
fortiguard.com/advisory/FG-IR-19-002