A exposure of resource to wrong sphere vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.2, FortiSandbox 4.4.3 through 4.4.8 may allow an unauthenticated attacker to access the VNC server of VMs performing scanning via network requests.
References
| Link | Resource |
|---|---|
| https://fortiguard.fortinet.com/psirt/FG-IR-26-145 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
15 Jul 2026, 15:00
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://fortiguard.fortinet.com/psirt/FG-IR-26-145 - Vendor Advisory | |
| First Time |
Fortinet fortisandbox
Fortinet |
|
| CPE | cpe:2.3:a:fortinet:fortisandbox:*:*:*:*:*:*:*:* |
14 Jul 2026, 16:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-07-14 16:17
Updated : 2026-07-15 15:00
NVD link : CVE-2026-59835
Mitre link : CVE-2026-59835
CVE.ORG link : CVE-2026-59835
JSON object : View
Products Affected
fortinet
- fortisandbox
CWE
CWE-668
Exposure of Resource to Wrong Sphere
