Medium severity5.3NVD Advisory· Published Jan 5, 2022· Updated Jun 17, 2026
CVE-2020-15933
CVE-2020-15933
Description
A exposure of sensitive information to an unauthorized actor in Fortinet FortiMail versions 6.0.9 and below, FortiMail versions 6.2.4 and below FortiMail versions 6.4.1 and 6.4.0 allows attacker to obtain potentially sensitive software-version information via client-side resources inspection.
Affected products
10cpe:2.3:a:fortinet:fortimail:*:*:*:*:*:*:*:*+ 9 more
- cpe:2.3:a:fortinet:fortimail:*:*:*:*:*:*:*:*range: <=6.0.9
- cpe:2.3:a:fortinet:fortimail:6.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:fortinet:fortimail:6.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:fortinet:fortimail:6.2.2:*:*:*:*:*:*:*
- cpe:2.3:a:fortinet:fortimail:6.2.3:*:*:*:*:*:*:*
- cpe:2.3:a:fortinet:fortimail:6.2.4:*:*:*:*:*:*:*
- cpe:2.3:a:fortinet:fortimail:6.4.0:*:*:*:*:*:*:*
- cpe:2.3:a:fortinet:fortimail:6.4.1:*:*:*:*:*:*:*
- (no CPE)range: <=6.0.9, <=6.2.4, <=6.4.1
- (no CPE)range: FortiMail 6.4.1, 6.4.0, 6.2.4, 6.2.3, 6.2.2, 6.2.1, 6.2.0, 6.0.9, 6.0.8, 6.0.7, 6.0.6, 6.0.5, 6.0.4, 6.0.3, 6.0.2, 6.0.1, 6.0.0, 5.4.12, 5.4.11, 5.4.10, 5.4.9, 5.4.8, 5.4.7, 5.4.6, 5.4.5, 5.4.4, 5.4.3, 5.4.2, 5.4.1, 5.4.0, 5.3.13, 5.3.12, 5.3.10, 5.3.9, 5.3.8, 5.3.7, 5.3.6, 5.3.5, 5.3.4, 5.3.3, 5.3.2, 5.3.1, 5.3.0, 5.2.10, 5.2.9, 5.2.8, 5.2.7, 5.2.6, 5.2.5, 5.2.4, 5.2.3, 5.2.2, 5.2.1, 5.2.0, 5.1.7, 5.1.6, 5.1.5, 5.1.4, 5.1.3, 5.1.2, 5.1.1, 5.1.0, 5.0.11, 5.0.10, 5.0.9, 5.0.8, 5.0.7, 5.0.6, 5.0.5, 5.0.4, 5.0.3, 5.0.2, 5.0.1, 5.0.0, 4.3.9, 4.3.8, 4.3.7, 4.3.6, 4.3.5, 4.3.4, 4.3.3, 4.3.2, 4.3.1, 4.3.0, 4.2.4, 4.2.3, 4.2.2, 4.2.1, 4.2.0, 4.1.3, 4.1.2, 4.1.1, 4.1.0, 4.0.5, 4.0.4, 4.0.3, 4.0.1
Patches
Vulnerability mechanics
References
1- fortiguard.com/psirt/FG-IR-20-105nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.