Description
A url redirection to untrusted site ('open redirect') vulnerability in Fortinet FortiSIEM 7.5.0 through 7.5.1, FortiSIEM 7.4.1 through 7.4.2 may allow attacker to execute unauthorized code or commands via <insert attack vector here>
Published: 2026-09-08
Score: 2.8 Low
EPSS: < 1% Very Low
KEV: No
Impact: Open Redirect (CWE-601)
Action: Upgrade
AI Analysis

Impact

The vulnerability is an open redirect flaw that allows an attacker to specify an external URL in a FortiSIEM request and be redirected to that untrusted site. According to the description, an attacker could use the redirect to facilitate phishing or deliver malicious payloads, effectively enabling execution of unauthorized code or commands if the victim follows the link. The flaw originates from improper validation of redirect targets (CWE‑601).

Affected Systems

This issue affects Fortinet FortiSIEM versions 7.4.1, 7.4.2, 7.5.0 and 7.5.1. Users running any of these releases should be aware that the redirect mechanism is untrusted and not sanitized. The affected component is the web interface or API that accepts redirect parameters.

Risk and Exploitability

The CVSS base score of 2.8 indicates low severity, and the EPSS score is not available, suggesting no widespread exploitation data. Because the issue is not listed in KEV, there is no known active exploitation. The attack would typically require a user to click the redirected link, so protection can be achieved by restricting redirect URLs or disabling the feature until a patch is applied.

Generated by OpenCVE AI on September 8, 2026 at 18:00 UTC.

Remediation

Vendor Solution

Upgrade to upcoming FortiSIEM version 7.6.0 or above Upgrade to upcoming FortiSIEM version 7.5.2 or above


OpenCVE Recommended Actions

  • Upgrade FortiSIEM to v7.6.0 or later, or at least to v7.5.2 to obtain the vendor patch.
  • Restrict or block external redirect destinations in the FortiSIEM configuration or via network controls to prevent users from being sent to untrusted sites.
  • Monitor for anomalous redirect activity in logs and user reports to detect potential exploitation attempts.

Generated by OpenCVE AI on September 8, 2026 at 18:00 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 09 Sep 2026 22:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 08 Sep 2026 17:45:00 +0000

Type Values Removed Values Added
Title Open Redirect in Fortinet FortiSIEM May Enable Unauthorized Code Execution

Tue, 08 Sep 2026 16:45:00 +0000

Type Values Removed Values Added
Description A url redirection to untrusted site ('open redirect') vulnerability in Fortinet FortiSIEM 7.5.0 through 7.5.1, FortiSIEM 7.4.1 through 7.4.2 may allow attacker to execute unauthorized code or commands via <insert attack vector here>
First Time appeared Fortinet
Fortinet fortisiem
Weaknesses CWE-601
CPEs cpe:2.3:a:fortinet:fortisiem:7.4.1:*:*:*:*:*:*:*
cpe:2.3:a:fortinet:fortisiem:7.4.2:*:*:*:*:*:*:*
cpe:2.3:a:fortinet:fortisiem:7.5.0:*:*:*:*:*:*:*
cpe:2.3:a:fortinet:fortisiem:7.5.1:*:*:*:*:*:*:*
Vendors & Products Fortinet
Fortinet fortisiem
References
Metrics cvssV3_1

{'score': 2.8, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N/E:P/RL:O/RC:C'}


Subscriptions

Fortinet Fortisiem
cve-icon MITRE

Status: PUBLISHED

Assigner: fortinet

Published:

Updated: 2026-09-10T03:56:51.064Z

Reserved: 2026-09-01T16:36:09.518Z

Link: CVE-2026-84389

cve-icon Vulnrichment

Updated: 2026-09-08T17:39:12.425Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-08T17:18:37.410

Modified: 2026-09-10T04:18:17.983

Link: CVE-2026-84389

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-08T21:30:16Z

Weaknesses
  • CWE-601

    URL Redirection to Untrusted Site ('Open Redirect')