VYPR
High severity8.6NVD Advisory· Published Jul 14, 2026· Updated Jul 15, 2026

CVE-2026-59835

CVE-2026-59835

Description

A exposure of resource to wrong sphere vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.2, FortiSandbox 4.4.3 through 4.4.8 may allow an unauthenticated attacker to access the VNC server of VMs performing scanning via network requests.

Affected products

2
  • cpe:2.3:a:fortinet:fortisandbox:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:fortinet:fortisandbox:*:*:*:*:*:*:*:*range: >=4.4.3,<4.4.9
    • (no CPE)range: 5.0.0 through 5.0.2, 4.4.3 through 4.4.8

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.