Fortinet

Fortisandbox

27 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.24%
  • Veröffentlicht 08.09.2026 16:41:47
  • Zuletzt bearbeitet 08.09.2026 18:35:10

A improper access control vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox Cloud 5.0.4 through 5.0.5, FortiSandbox PaaS 5.0.4 through 5.0.5 may allow attacker to access sensitive information v...

  • EPSS 0.88%
  • Veröffentlicht 08.09.2026 16:41:43
  • Zuletzt bearbeitet 08.09.2026 18:35:10

A improper neutralization of special elements used in a command ('command injection') vulnerability in Fortinet FortiSandbox 5.2.0, FortiSandbox 5.0.0 through 5.0.6, FortiSandbox 4.4.0 through 4.4.9 may allow attacker to execute unauthorized code or ...

  • EPSS 0.46%
  • Veröffentlicht 14.07.2026 15:12:20
  • Zuletzt bearbeitet 15.07.2026 15:00:41

A exposure of resource to wrong sphere vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.2, FortiSandbox 4.4.3 through 4.4.8 may allow an unauthenticated attacker to access the VNC server of VMs performing scanning via network requests.

Warnung Medienbericht
  • EPSS 73.6%
  • Veröffentlicht 09.06.2026 14:27:47
  • Zuletzt bearbeitet 23.07.2026 08:10:00

A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox 4.2 all versions, FortiSandbox Cloud 5.0.4 through...

Medienbericht
  • EPSS 0.73%
  • Veröffentlicht 12.05.2026 16:54:04
  • Zuletzt bearbeitet 08.07.2026 14:16:57

A missing authorization vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.1, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox Cloud 5.0.2 through 5.0.5, FortiSandbox PaaS 23.4 all versions, FortiSandbox PaaS 23.3 all versions, FortiSandbox PaaS ...

Medienbericht
  • EPSS 23.06%
  • Veröffentlicht 14.04.2026 15:38:30
  • Zuletzt bearbeitet 20.04.2026 19:11:30

A path traversal: '../filedir' vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.4.8 may allow attacker to escalation of privilege via <insert attack vector here>

  • EPSS 0.28%
  • Veröffentlicht 14.04.2026 15:38:21
  • Zuletzt bearbeitet 22.04.2026 19:09:04

An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability [CWE-79] vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.4, FortiSandbox PaaS 5.0.0 through 5.0.4 may allow an attacker to perform an XSS a...

  • EPSS 0.19%
  • Veröffentlicht 14.04.2026 15:38:18
  • Zuletzt bearbeitet 21.04.2026 17:12:33

A improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox 4.2 all versions, FortiSandbox PaaS 5.0.0 through 5.0.5,...

  • EPSS 0.46%
  • Veröffentlicht 14.04.2026 15:38:16
  • Zuletzt bearbeitet 22.04.2026 18:55:51

A improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox 4.2 all versions, FortiSandbox Cloud 5.0.4, FortiSandbox PaaS ...

Warnung Medienbericht Exploit
  • EPSS 91.21%
  • Veröffentlicht 14.04.2026 15:38:02
  • Zuletzt bearbeitet 17.07.2026 05:16:38

A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.8 may allow attacker to execute unauthorized code or commands via <insert attack vector here>