Impact
The vulnerability is an open redirect flaw that allows an attacker to specify an external URL in a FortiSIEM request and be redirected to that untrusted site. According to the description, an attacker could use the redirect to facilitate phishing or deliver malicious payloads, effectively enabling execution of unauthorized code or commands if the victim follows the link. The flaw originates from improper validation of redirect targets (CWE‑601).
Affected Systems
This issue affects Fortinet FortiSIEM versions 7.4.1, 7.4.2, 7.5.0 and 7.5.1. Users running any of these releases should be aware that the redirect mechanism is untrusted and not sanitized. The affected component is the web interface or API that accepts redirect parameters.
Risk and Exploitability
The CVSS base score of 2.8 indicates low severity, and the EPSS score is not available, suggesting no widespread exploitation data. Because the issue is not listed in KEV, there is no known active exploitation. The attack would typically require a user to click the redirected link, so protection can be achieved by restricting redirect URLs or disabling the feature until a patch is applied.
OpenCVE Enrichment