← Back

CVE-2019-15707

nvd nist
Published: Jan 23, 2020Modified: Nov 21, 2024

JSON object

Loading...
4.9
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Exploitability: 1.2 / Impact: 3.6
Source: NVD

Description

An improper access control vulnerability in FortiMail admin webUI 6.2.0, 6.0.0 to 6.0.6, 5.4.10 and below may allow administrators to perform system backup config download they should not be authorized for.

Affected (3)

Products: Fortinet: Fortimail
1 product
Fortimail
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Fortinet
Up to 5.4.10
From 6.0.0 to 6.0.6
Version 6.2.0

References (2)

Source: psirt@fortinet.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.