CVE-2022-26114
06.09.2022, 16:15
An improper neutralization of input during web page generation vulnerability [CWE-79] in the Webmail of FortiMail before 7.2.0 may allow an unauthenticated attacker to trigger a cross-site scripting (XSS) attack via sending specially crafted mail messages.
Vendor | Product | Version |
---|---|---|
fortinet | fortimail | 𝑥 < 7.2.0 |
𝑥
= Vulnerable software versions