← Back to CVE search

CVE-2026-59835

FortiSandbox

Description

A exposure of resource to wrong sphere vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.2, FortiSandbox 4.4.3 through 4.4.8 may allow an unauthenticated attacker to access the VNC server of VMs performing scanning via network requests.

CVSS 8.6EPSS 0.45999999999999996%Risk 0.9
View source
Published
2026-07-14 16:17:02
Affected versions
>=5.0.0,<5.0.3
Type
Critical software
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L