CVE-2022-43950: Medium severity fortinet fortinac vulnerability
A URL redirection to untrusted site ('Open Redirect') vulnerability [CWE-601] in FortiNAC-F version 7.2.0, FortiNAC version 9.4.1 and below, 9.2 all versions, 9.1 all versions, 8.8 all versions, 8.7 all versions may allow an unauthenticated attacker to redirect users to any arbitrary website via a crafted URL.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2022-43950?
The CVE-2022-43950 vulnerability has been classified with a moderate severity level due to its potential impact on user redirection.
How do I fix CVE-2022-43950?
To fix CVE-2022-43950, upgrade to FortiNAC version 9.4.2 or later, or apply the necessary patches provided by Fortinet.
What versions are affected by CVE-2022-43950?
CVE-2022-43950 affects FortiNAC version 9.4.1 and below, as well as FortiNAC-F version 7.2.0.
Can attackers exploit CVE-2022-43950 remotely?
Yes, CVE-2022-43950 can be exploited by unauthenticated attackers to redirect users to untrusted sites.
What type of vulnerability is CVE-2022-43950?
CVE-2022-43950 is categorized as an 'Open Redirect' vulnerability, which falls under the CWE-601 classification.