QID 376127
Date Published: 2021-12-07
QID 376127: FortiGate FortiManager and FortiAnalyzer Hypertext Transfer Protocol (HTTP) splitting Vulnerability (CWE-113)
FortiManager provides centralized policy-based provisioning, device configuration, and update management for FortiGate, FortiWiFi, and FortiMail appliances, and FortiClient end-point security agents, plus end-to-end network monitoring and device control.
The vulnerability exists due to software does not correctly process CRLF character sequences in FortiManager and FortiAnalyzer GUI. A remote user can send a specially crafted request containing CRLF sequence and make the application to send a split HTTP response.
Affected Products:
FortiManager versions: 5.6.0, 5.6.1, 5.6.2, 5.6.3, 5.6.4, 5.6.5, 5.6.6, 5.6.7, 5.6.8, 5.6.9, 5.6.10, 5.6.11, 6.0.0, 6.0.1, 6.0.2, 6.0.3, 6.0.4, 6.0.5, 6.0.6, 6.0.7, 6.0.8, 6.0.9, 6.0.10, 6.0.11, 6.2.0, 6.2.1, 6.2.2, 6.2.3, 6.2.4, 6.2.5, 6.2.6, 6.2.7, 6.2.8, 6.4.0, 6.4.1, 6.4.2, 6.4.3, 6.4.4, 6.4.5, 6.4.6, 7.0.0
FortiAnalyzer versions: 5.6.0, 5.6.1, 5.6.2, 5.6.3, 5.6.4, 5.6.5, 5.6.6, 5.6.7, 5.6.8, 5.6.9, 5.6.10, 5.6.11, 6.0.0, 6.0.1, 6.0.2, 6.0.3, 6.0.4, 6.0.5, 6.0.6, 6.0.7, 6.0.8, 6.0.9, 6.0.10, 6.0.11, 6.2.0, 6.2.1, 6.2.2, 6.2.3, 6.2.4, 6.2.5, 6.2.6, 6.2.7, 6.2.8, 6.4.0, 6.4.1, 6.4.2, 6.4.3, 6.4.4, 6.4.5, 6.4.6, 7.0.0
QID Detection Logic(Authenticated):
QID will fire the command get system status and will match the affected version
The vulnerability allows a remote user to perform HTTP splitting attacks.
Customers are advised to refer to CVE-2021-32598 for more information.
- CVE-2021-32598 -
www.cybersecurity-help.cz/vdb/SB2021080318 - FG-IR-21-063 -
fortiguard.com/advisory/FG-IR-21-063
CVEs related to QID 376127
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| FortiMangaer and Analyzer |
|