cbcvebase.
CVE-2022-23439
published 2025-01-22

CVE-2022-23439: A externally controlled reference to a resource in another sphere vulnerability in Fortinet allows attacker to poison web caches via crafted HTTP requests…

medium6.1CVSS 3.1
AVNACLPRNUIRSCCLILAN
A externally controlled reference to a resource in another sphere vulnerability in Fortinet allows attacker to poison web caches via crafted HTTP requests, where the `Host` header points to an arbitrary webserver

Affected

131 ranges· showing 25
VendorProductVersion rangeFixed in
fortinetfortiadc
fortinetfortiadc5.0.0 – 5.0.4
fortinetfortiadc5.1.0 – 5.1.7
fortinetfortiadc5.2.0 – 5.2.8
fortinetfortiadc5.3.0 – 5.3.7
fortinetfortiadc>= 5.4.0 < 6.2.46.2.4
fortinetfortiadc5.4.0 – 5.4.5
fortinetfortiadc6.0.0 – 6.0.4
fortinetfortiadc6.1.0 – 6.1.6
fortinetfortiadc6.2.0 – 6.2.3
fortinetfortiadc7.0.0 – 7.0.1
fortinetfortianalyzer6.2.0 – 6.2.13
fortinetfortianalyzer6.4.0 – 6.4.15
fortinetfortianalyzer7.0.0 – 7.0.15
fortinetfortianalyzer7.2.0 – 7.2.11
fortinetfortianalyzer7.4.0 – 7.4.2
fortinetfortiauthenticator
fortinetfortiauthenticator
fortinetfortiauthenticator5.1.0 – 5.1.2
fortinetfortiauthenticator5.2.0 – 5.2.2
fortinetfortiauthenticator5.3.0 – 5.3.1
fortinetfortiauthenticator5.4.0 – 5.4.1
fortinetfortiauthenticator6.0.0 – 6.0.8
fortinetfortiauthenticator6.1.0 – 6.1.3
fortinetfortiauthenticator6.2.0 – 6.2.2