#VU31051 Open redirect in FortiOS - CVE-2018-13384
Published: June 4, 2019 / Updated: July 17, 2020
FortiOS
Fortinet, Inc
Description
The vulnerability allows a remote non-authenticated attacker to read and manipulate data.
A Host Header Redirection vulnerability in Fortinet FortiOS all versions below 6.0.5 under SSL VPN web portal allows a remote attacker to potentially poison HTTP cache and subsequently redirect SSL VPN web portal users to arbitrary web domains.