Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-23664


A URL redirection to untrusted site ('open redirect') in Fortinet FortiAuthenticator version 6.6.0, version 6.5.3 and below, version 6.4.9 and below may allow an attacker to to redirect users to an arbitrary website via a crafted URL.


Published

2024-06-03T10:15:12.620

Last Modified

2025-01-21T21:53:28.560

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.1 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-601

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application fortinet fortiauthenticator < 6.5.4 Yes
Application fortinet fortiauthenticator 6.6.0 Yes

References