CVE List

CVE-2021-24015

Critical 8.8

An improper neutralization of special elements used in an OS Command vulnerability in the administrative interface of FortiMail before 6.4.4 may allow an authenticated attacker to execute unauthorized commands via specifically crafted HTTP requests.

Published July 12, 2021.

Affected software

Get alerts for Fortinet Fortimail

Reference links