CVE-2022-23439
published 2025-01-22CVE-2022-23439: A externally controlled reference to a resource in another sphere vulnerability in Fortinet allows attacker to poison web caches via crafted HTTP requests…
PriorityP431medium6.1CVSS 3.1
AVNACLPRNUIRSCCLILAN
EPSS
0.44%
35.8th percentile
A externally controlled reference to a resource in another sphere vulnerability in Fortinet allows attacker to poison web caches via crafted HTTP requests, where the `Host` header points to an arbitrary webserver
Affected
131 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fortinet | fortiadc | — | — |
| fortinet | fortiadc | 5.0.0 – 5.0.4 | — |
| fortinet | fortiadc | 5.1.0 – 5.1.7 | — |
| fortinet | fortiadc | 5.2.0 – 5.2.8 | — |
| fortinet | fortiadc | 5.3.0 – 5.3.7 | — |
| fortinet | fortiadc | >= 5.4.0 < 6.2.4 | 6.2.4 |
| fortinet | fortiadc | 5.4.0 – 5.4.5 | — |
| fortinet | fortiadc | 6.0.0 – 6.0.4 | — |
| fortinet | fortiadc | 6.1.0 – 6.1.6 | — |
| fortinet | fortiadc | 6.2.0 – 6.2.3 | — |
| fortinet | fortiadc | 7.0.0 – 7.0.1 | — |
| fortinet | fortianalyzer | 6.2.0 – 6.2.13 | — |
| fortinet | fortianalyzer | 6.4.0 – 6.4.15 | — |
| fortinet | fortianalyzer | 7.0.0 – 7.0.15 | — |
| fortinet | fortianalyzer | 7.2.0 – 7.2.11 | — |
| fortinet | fortianalyzer | 7.4.0 – 7.4.2 | — |
| fortinet | fortiauthenticator | — | — |
| fortinet | fortiauthenticator | — | — |
| fortinet | fortiauthenticator | 5.1.0 – 5.1.2 | — |
| fortinet | fortiauthenticator | 5.2.0 – 5.2.2 | — |
| fortinet | fortiauthenticator | 5.3.0 – 5.3.1 | — |
| fortinet | fortiauthenticator | 5.4.0 – 5.4.1 | — |
| fortinet | fortiauthenticator | 6.0.0 – 6.0.8 | — |
| fortinet | fortiauthenticator | 6.1.0 – 6.1.3 | — |
| fortinet | fortiauthenticator | 6.2.0 – 6.2.2 | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Fortinet
`Host` header injection
vendor_fortinet·2025-01-22·CVSS 4.7
CVE-2022-23439 [MEDIUM] CWE-610 `Host` header injection
FG-IR-23-494: `Host` header injection
A externally controlled reference to a resource in another sphere vulnerability in Fortinet allows attacker to poison web caches via crafted HTTP requests, where the `Host` header points to an arbitrary webserver
CVEs: CVE-2022-23439
CWEs: CWE-610
CVSS: 4.7 (medium)
Affected products: FortiADC, FortiAuthenticator, FortiDDoS, FortiDdos-f, FortiMail, FortiNdr, FortiOS, FortiProxy, FortiRecorder, FortiSOAR, FortiSwitch, FortiTester, FortiVoice, FortiWLC, Fortinet
GHSA
GHSA-xw2g-vg83-c99r: A externally controlled reference to a resource in another sphere in Fortinet FortiManager before version 7
ghsa_unreviewed·2025-01-22
CVE-2022-23439 [MEDIUM] CWE-610 GHSA-xw2g-vg83-c99r: A externally controlled reference to a resource in another sphere in Fortinet FortiManager before version 7
A externally controlled reference to a resource in another sphere in Fortinet FortiManager before version 7.4.3, FortiMail before version 7.0.3, FortiAnalyzer before version 7.4.3, FortiVoice version 7.0.0, 7.0.1 and before 6.4.8, FortiProxy before version 7.0.4, FortiRecorder version 6.4.0 through 6.4.2 and before 6.0.10, FortiAuthenticator version 6.4.0 through 6.4.1 and before 6.3.3, FortiNDR version 7.2.0 before 7.1.0, FortiWLC before version 8.6.4, FortiPortal before version 6.0.9, FortiOS version 7.2.0 and before 7.0.5, FortiADC version 7.0.0 through 7.0.1 and before 6.2.3 , FortiDDoS before version 5.5.1, FortiDDoS-F before version 6.3.3, FortiTester before version 7.2.1, FortiSOAR before version 7.2.2 and FortiSwitch before version 6.3.3 allows attacker to poison web caches via cra
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-01-22
Published