NA

CVE-2022-39945

Published: 02/11/2022 Updated: 03/11/2022
CVSS v3 Base Score: 6.5 | Impact Score: 5.2 | Exploitability Score: 1.2
VMScore: 0

Vulnerability Summary

An improper access control vulnerability [CWE-284] in FortiMail 7.2.0, 7.0.0 up to and including 7.0.3, 6.4 all versions, 6.2 all versions, 6.0 all versions may allow an authenticated admin user assigned to a specific domain to access and modify other domains information via insecure direct object references (IDOR).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

fortinet fortimail

fortinet fortimail 7.2.0