SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-59835

HIGH · CVSS 8.6 EPSS 0.46%

Source: NVD + CISA KEV + EPSS · Published 2026-07-14 · Last synced 2026-08-13

CyberRota Analysis

AI-Generated

Fortinet FortiSandbox versions 5.0.0 to 5.0.2 and 4.4.3 to 4.4.8 are vulnerable to unauthorized access, allowing unauthenticated attackers to exploit the VNC server of virtual machines conducting scans through network requests. This exposure could lead to unauthorized control over the affected VMs, potentially compromising sensitive data or network integrity. Organizations using these Fortinet products should prioritize remediation to mitigate the risk of exploitation.

CVE
CVE-2026-59835
Severity
HIGH
CVSS
8.6
EPSS
0.46%
Fortinet

Original NVD Description

A exposure of resource to wrong sphere vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.2, FortiSandbox 4.4.3 through 4.4.8 may allow an unauthenticated attacker to access the VNC server of VMs performing scanning via network requests.

Related CVEs

Other vulnerabilities affecting the same vendor(s)