CVE-2020-29011
04.08.2021, 16:15
Instances of SQL Injection vulnerabilities in the checksum search and MTA-quarantine modules of FortiSandbox 3.2.0 through 3.2.2, and 3.1.0 through 3.1.4 may allow an authenticated attacker to execute unauthorized code on the underlying SQL interpreter via specifically crafted HTTP requests.
| Vendor | Product | Version |
|---|---|---|
| fortinet | fortisandbox | 𝑥 < 3.1.5 |
| fortinet | fortisandbox | 3.2.0 ≤ 𝑥 < 3.2.2 |
𝑥
= Vulnerable software versions