CVEs (9)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Fortinet 3Fortisandbox Fortisandbox CloudFortisandbox PaasJul 17, 2026 Jun 9, 2026 N/A· v4 9.8 CRITICAL· v3 N/A· v2 A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox 4.2 all versions, Fo...Show more |
1Fortinet 3Fortisandbox Fortisandbox CloudFortisandbox PaasJul 8, 2026 May 12, 2026 N/A· v4 9.8 CRITICAL· v3 N/A· v2 A missing authorization vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.1, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox Cloud 5.0.2 through 5.0.5, FortiSandbox PaaS 23.4 all versions, FortiSandbox PaaS 23.3 al...Show more |
1Fortinet 2Fortisandbox Fortisandbox CloudJun 17, 2026 Apr 14, 2026 N/A· v4 4.8 MEDIUM· v3 N/A· v2 A improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox 4.2 all versions, FortiSan...Show more |
1Fortinet 2Fortisandbox Fortisandbox CloudJun 17, 2026 Apr 14, 2026 N/A· v4 2.7 LOW· v3 N/A· v2 A insufficiently protected credentials vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4 all versions, FortiSandbox PaaS 5.0.1 through 5.0.5 may allow an authenticathed administrator to read LD...Show more |
1Fortinet 2Fortisandbox Fortisandbox CloudJun 17, 2026 Apr 14, 2026 N/A· v4 6.7 MEDIUM· v3 N/A· v2 A improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox 4.2 all versions, FortiSandbox C...Show more |
1Fortinet 2Fortisandbox Fortisandbox CloudJun 17, 2026 Apr 14, 2026 N/A· v4 5.4 MEDIUM· v3 N/A· v2 An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability [CWE-79] vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.4, FortiSandbox PaaS 5.0.0 through 5.0.4 may allow a...Show more |
An improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox Cloud 5.0.4, FortiSandbox PaaS 5.0.4 may allow a privileged attacker with super-admin...Show more |
1Fortinet 3 Fortisandbox Paas FortisandboxFortisandbox CloudJun 17, 2026 Dec 9, 2025 N/A· v4 7.2 HIGH· v3 N/A· v2 An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.2, FortiSandbox 4.4.0 through 4.4.7, FortiSand...Show more |
1Fortinet 2Fortisandbox Fortisandbox CloudJun 17, 2026 Mar 11, 2025 N/A· v4 8.8 HIGH· v3 N/A· v2 An improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiSandbox 4.4.0 through 4.4.6, FortiSandbox 4.2 all versions, FortiSandbox 4.0 all versions, FortiSandbox 3.2 all ver...Show more |