Security Advisory

CVE-2021-26099

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-07-12 09:56:37
Last updated 2024-10-25 13:56:14
Assigner fortinet
State PUBLISHED

Description

Missing cryptographic steps in the Identity-Based Encryption service of FortiMail before 7.0.0 may allow an attacker who comes in possession of the encrypted master keys to compromise their confidentiality by observing a few invariant properties of the ciphertext.