AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2023-22641

MEDIUM · CVSS 4.1 EPSS 0.30%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2023-04-11 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 4.1. It affects Fortinet, FortiOS. Exploitation may require the attacker to be authenticated.

CVE
CVE-2023-22641
Severity
MEDIUM
CVSS
4.1
EPSS
0.30%
Fortinet FortiOS

Original NVD Description

A url redirection to untrusted site ('open redirect') in Fortinet FortiOS version 7.2.0 through 7.2.3, FortiOS version 7.0.0 through 7.0.9, FortiOS versions 6.4.0 through 6.4.12, FortiOS all versions 6.2, FortiOS all versions 6.0, FortiProxy version 7.2.0 through 7.2.2, FortiProxy version 7.0.0 through 7.0.8, FortiProxy all versions 2.0, FortiProxy all versions 1.2, FortiProxy all versions 1.1, FortiProxy all versions 1.0 allows an authenticated attacker to execute unauthorized code or commands via specially crafted requests.

Related CVEs

Other vulnerabilities affecting the same vendor(s)