VYPR
Medium severity6.3NVD Advisory· Published Jul 20, 2021· Updated Jun 17, 2026

CVE-2021-22125

CVE-2021-22125

Description

An instance of improper neutralization of special elements in the sniffer module of FortiSandbox before 3.2.2 may allow an authenticated administrator to execute commands on the underlying system's shell via altering the content of its configuration file.

Affected products

3
  • cpe:2.3:a:fortinet:fortisandbox:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:fortinet:fortisandbox:*:*:*:*:*:*:*:*range: <3.2.2
    • (no CPE)range: <3.2.2
    • (no CPE)range: FortiSandbox before 3.2.2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.