An Open Redirect vulnerability in Fortinet FortiAnalyzer 5.4.0 through 5.4.2 and FortiManager 5.4.0 through 5.4.2 allows attacker to execute unauthorized code or commands via the next parameter.
https://fortiguard.com/psirt/FG-IR-17-014
https://euvd.enisa.europa.eu/vulnerability/EUVD-2017-12267
http://www.securitytracker.com/id/1038540