URL Redirection Vulnerability in Fortinet's FortiOS and FortiProxy
CVE-2025-47890
2.5LOW
What is CVE-2025-47890?
The vulnerability found in Fortinet's FortiOS and FortiProxy products allows attackers to exploit an open redirect mechanism through carefully crafted HTTP requests. This flaw could enable unauthenticated individuals to redirect users to malicious sites, potentially leading to further attacks or unauthorized data access. It is critical for organizations using affected versions to assess their exposure and implement necessary mitigations to safeguard sensitive information.
Affected Version(s)
FortiOS 7.6.0 <= 7.6.2
FortiOS 7.4.0 <= 7.4.8
FortiOS 7.2.0 <= 7.2.12