Lucene search

K
fortinetFortiGuard LabsFG-IR-21-021
HistoryJul 07, 2021 - 12:00 a.m.

FortiMail - OS Command injection

2021-07-0700:00:00
FortiGuard Labs
www.fortiguard.com
20
fortimail
command injection
os command vulnerability
cwe-78
administrative interface
authenticated attacker
unauthorized commands
http requests

EPSS

0.002

Percentile

62.1%

An improper neutralization of special elementsused in an OS Command vulnerability (CWE-78) in FortiMail’s administrative interface may allow an authenticated attacker to execute unauthorized commands via specifically crafted HTTP requests.

EPSS

0.002

Percentile

62.1%

Related for FG-IR-21-021