Loading HuntDB...

GHSA-vgmj-g5qh-wr55

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

An improper authorization vulnerability [CWE-285] in FortiMail webmail version 7.2.0 through 7.2.2 and before 7.0.5 allows an authenticated attacker to see and modify the title of address book folders of other users via crafted HTTP or HTTPs requests.

Related CVEs

Key Information

GHSA ID
GHSA-vgmj-g5qh-wr55
Published
November 14, 2023 6:30 PM
Last Modified
November 14, 2023 6:30 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 18, 2025 6:25 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.