PT-2026-7061 · Unknown · Fast/Tools

Published

2026-02-09

·

Updated

2026-03-06

·

CVE-2025-66596

CVSS v4.0

6.9

Medium

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N
Name of the Vulnerable Software and Affected Versions FAST/TOOLS versions R9.01 through R10.04
Description The software does not properly validate request headers. An attacker inserting an invalid host header could redirect users to malicious sites. The vulnerable component is susceptible to host header injection attacks.
Recommendations Update to a version later than R10.04.

Fix

Open Redirect

Weakness Enumeration

Related Identifiers

BDU:2026-01898
CVE-2025-66596

Affected Products

Fast/Tools