CVE-2024-46663: Fortinet FortiMail
Medium severity, CVSS 6.7. EPSS: 0.2% chance of exploitation in the next 30 days.
A stack-buffer overflow vulnerability [CWE-121] in Fortinet FortiMail CLI version 7.6.0 through 7.6.1 and before 7.4.3 allows a privileged attacker to execute arbitrary code or commands via specifically crafted CLI commands.
Affected products
- Fortinet FortiMail: from 6.4.0, before 7.2.7 (fixed in 7.2.7); from 7.4.0, before 7.4.4 (fixed in 7.4.4); from 7.6.0, before 7.6.2 (fixed in 7.6.2)
Published 2025-03-11. Last modified 2026-06-17.