cbcvebase.
CVE-2021-24013
published 2021-07-12

CVE-2021-24013: Multiple Path traversal vulnerabilities in the Webmail of FortiMail before 6.4.4 may allow a regular user to obtain unauthorized access to files and data via…

medium6.5CVSS 3.1
AVNACLPRLUINSUCHINAN
Multiple Path traversal vulnerabilities in the Webmail of FortiMail before 6.4.4 may allow a regular user to obtain unauthorized access to files and data via specifically crafted web requests.

Affected

6 ranges
VendorProductVersion rangeFixed in
fortinetfortimail
fortinetfortimail5.4.0 – 5.4.12
fortinetfortimail>= 6.0.0 < 6.0.116.0.11
fortinetfortimail>= 6.2.0 < 6.2.76.2.7
fortinetfortimail>= 6.4.0 < 6.4.46.4.4
fortinetfortinet_fortimail