CVE-2021-26099

Publication date

2021-07-12 09:56:37

Family

fortinet

State

PUBLISHED

Description

Missing cryptographic steps in the Identity-Based Encryption service of FortiMail before 7.0.0 may allow an attacker who comes in possession of the encrypted master keys to compromise their confidentiality by observing a few invariant properties of the ciphertext.