CVE-2022-29056
09.03.2023, 15:15
A improper restriction of excessive authentication attempts vulnerability [CWE-307] in Fortinet FortiMail version 6.4.0, version 6.2.0 through 6.2.4 and before 6.0.9 allows a remote unauthenticated attacker to partially exhaust CPU and memory via sendingnumerous HTTP requests to the login form.Enginsight
Vendor | Product | Version |
---|---|---|
fortinet | fortimail | 6.0.0 ≤ 𝑥 < 6.0.10 |
fortinet | fortimail | 6.2.1 ≤ 𝑥 < 6.2.5 |
fortinet | fortimail | 6.4.0 |
𝑥
= Vulnerable software versions