Fortinet FortiMail是美国飞塔(Fortinet)公司的一套电子邮件安全网关产品。该产品提供电子邮件安全防护和数据保护等功能。 FortiMail在7.0.0之前存在安全漏洞,该漏洞源于基于身份的加密服务中缺少加密步骤,可能会让拥有加密主密钥的攻击者可利用该漏洞通过观察密文的一些不变属性来破坏其机密性。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Fortinet | Fortinet FortiMail | FortiMail before 7.0.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-24013 | 8.8 HIGH | FortiMail路径遍历漏洞 |
| CVE-2021-24015 | 7.2 HIGH | FortiMail操作系统命令注入漏洞 |
| CVE-2021-26088 | 7.1 HIGH | Fortinet FSSO Collector Agent 授权问题漏洞 |
| CVE-2021-26089 | 6.7 MEDIUM | Fortinet FortiClient 后置链接漏洞 |
| CVE-2021-26090 | 5.3 MEDIUM | Fortinet FortiMail 安全漏洞 |
No comments yet