20060213 URL filter bypass in Fortinetmailing list
http://lists.grok.org.uk/pipermail/full-disclosure/2006-February/042140.html CVE-2005-3058
Fortinet Fortigate 2.x/3.0 - URL Filtering Bypass
Record summary
CVE-2005-3058 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
Interpretation conflict in Fortinet FortiGate 2.8, running FortiOS 2.8MR10 and v3beta, allows remote attackers to bypass the URL blocker via an (1) HTTP request terminated with a line feed (LF) and not carriage return line feed (CRLF) or (2) HTTP request with no Host field, which is still processed by most web servers without violating RFC2616.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBFortinet Fortigate 2.x/3.0 - URL Filtering BypassExploitDB exploitby Mathieu DessusNot analyzed1 file
References
818844Third-party advisory
http://secunia.com/advisories/18844 fortiguard.com
http://www.fortiguard.com/advisory/FGA-2006-10.html 20060213 URL filter bypass in Fortinetmailing list
http://www.securityfocus.com/archive/1/424858/100/0/threaded 16599vdb entry
http://www.securityfocus.com/bid/16599 ADV-2006-0539vdb entry
http://www.vupen.com/english/advisories/2006/0539 fortinet-web-filter-bypass(24626)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/24626 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2005-3058