Vulnerabilities
Vulnerable Software
Fortinet:  >> Fortimail  >> 5.3.9  Security Vulnerabilities
An improper access control vulnerability in FortiMail admin webUI 6.2.0, 6.0.0 to 6.0.6, 5.4.10 and below may allow administrators to perform system backup config download they should not be authorized for.
CVSS Score
4.9
EPSS Score
0.009
Published
2020-01-23
An improper access control vulnerability in FortiMail admin webUI 6.2.0, 6.0.0 to 6.0.6, 5.4.10 and below may allow administrators to access web console they should not be authorized for.
CVSS Score
7.2
EPSS Score
0.005
Published
2020-01-23
A reflected Cross-Site Scripting (XSS) vulnerability in Fortinet FortiMail 5.1 and earlier, 5.2.0 through 5.2.9, and 5.3.0 through 5.3.9 customized pre-authentication webmail login page allows attacker to inject arbitrary web script or HTML via crafted HTTP requests.
CVSS Score
6.1
EPSS Score
0.009
Published
2017-10-26


Contact Us

Shodan ® - All rights reserved