A externally controlled reference to a resource in another sphere vulnerability in Fortinet allows attacker to poison web caches via crafted HTTP requests, where the `Host` header points to an arbitrary webserver
References
| Link | Resource |
|---|---|
| https://fortiguard.com/psirt/FG-IR-23-494 |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2025-01-22 10:15
Updated : 2026-01-14 14:16
NVD link : CVE-2022-23439
Mitre link : CVE-2022-23439
CVE.ORG link : CVE-2022-23439
JSON object : View
Products Affected
fortinet
- fortiproxy
- fortisoar
- fortirecorder
- fortiauthenticator
- fortiadc
- fortiddos
- fortiswitch
- fortios
- fortindr
- fortiwlc
- fortimail
- fortivoice
- fortiddos-f
- fortitester
CWE
CWE-610
Externally Controlled Reference to a Resource in Another Sphere
