CVE-2021-24013: Path Traversal
Multiple Path traversal vulnerabilities in the Webmail of FortiMail before 6.4.4 may allow a regular user to obtain unauthorized access to files and data via specifically crafted web requests.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this FortiMail vulnerability?
The vulnerability ID is CVE-2021-24013.
What is the severity level of CVE-2021-24013?
The severity level of CVE-2021-24013 is high with a score of 6.5.
What is the affected software for CVE-2021-24013?
The affected software for CVE-2021-24013 is FortiMail versions between 5.4.0 and 5.4.12, between 6.0.0 and 6.0.11, between 6.2.0 and 6.2.7, and between 6.4.0 and 6.4.4.
What is the description of CVE-2021-24013?
CVE-2021-24013 is a path traversal vulnerability in the Webmail of FortiMail before version 6.4.4 that may allow a regular user to obtain unauthorized access to files and data via specifically crafted web requests.
How can I fix the vulnerability CVE-2021-24013?
To fix the vulnerability CVE-2021-24013, it is recommended to update FortiMail to version 6.4.4 or later.