High severity8.6NVD Advisory· Published Jul 14, 2026· Updated Jul 15, 2026
CVE-2026-59835
CVE-2026-59835
Description
A exposure of resource to wrong sphere vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.2, FortiSandbox 4.4.3 through 4.4.8 may allow an unauthenticated attacker to access the VNC server of VMs performing scanning via network requests.
Affected products
2cpe:2.3:a:fortinet:fortisandbox:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:fortinet:fortisandbox:*:*:*:*:*:*:*:*range: >=4.4.3,<4.4.9
- (no CPE)range: 5.0.0 through 5.0.2, 4.4.3 through 4.4.8
Patches
Vulnerability mechanics
References
1- fortiguard.fortinet.com/psirt/FG-IR-26-145nvdVendor Advisory
News mentions
0No linked articles in our index yet.