An improper access control vulnerability in FortiMail admin webUI 6.2.0, 6.0.0 to 6.0.6, 5.4.10 and below may allow administrators to perform system backup config download they should not be authorized for.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Fortimail | Fortinet | * | 5.4.10 (including) |
Fortimail | Fortinet | 6.0.0 (including) | 6.0.6 (including) |
Fortimail | Fortinet | 6.2.0 (including) | 6.2.0 (including) |