A externally controlled reference to a resource in another sphere vulnerability in Fortinet allows attacker to poison web caches via crafted HTTP requests, where the `Host` header points to an arbitrary webserver
References
| Link | Resource |
|---|---|
| https://fortiguard.com/psirt/FG-IR-23-494 |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2025-01-22 10:15
Updated : 2026-06-17 04:30
NVD link : CVE-2022-23439
Mitre link : CVE-2022-23439
CVE.ORG link : CVE-2022-23439
JSON object : View
Products Affected
fortinet
- fortiadc
- fortitester
- fortios
- fortiddos
- fortiproxy
- fortiauthenticator
- fortivoice
- fortiwlc
- fortiswitch
- fortirecorder
- fortisoar
- fortimail
- fortindr
- fortiddos-f
CWE
CWE-610
Externally Controlled Reference to a Resource in Another Sphere
