SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-84387

HIGH · CVSS 7.2 EPSS 0.88%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

Fortinet FortiSandbox versions 5.2.0, 5.0.0 through 5.0.6, and 4.4.0 through 4.4.9 are vulnerable to command injection, allowing attackers to execute unauthorized code or commands. This vulnerability poses a high risk, potentially compromising the integrity and confidentiality of the affected systems. Organizations using these Fortinet products should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-84387
Severity
HIGH
CVSS
7.2
EPSS
0.88%
Fortinet

Original NVD Description

A improper neutralization of special elements used in a command ('command injection') vulnerability in Fortinet FortiSandbox 5.2.0, FortiSandbox 5.0.0 through 5.0.6, FortiSandbox 4.4.0 through 4.4.9 may allow attacker to execute unauthorized code or commands via <insert attack vector here>