logo

Warning: Remote Code Execution & Privilege Escalation in Fortinet FortiSandbox Patch Immediately!

ID: d75645f1-0eb3-5768-b1eb-4acce7247daf

STIX ID: report--d75645f1-0eb3-5768-b1eb-4acce7247daf

Feed Name: CCB Advisories Feed

Threat Score
90/100

Date Published: 2026-07-17

Date Updated: 2026-07-24

...
...

**Executive Summary:** Two critical FortiSandbox vulnerabilities (CVE-2026-39808 and CVE-2026-39813) affecting FortiSandbox 4.4.0–4.4.8 (and 5.0.0–5.0.5 for CVE-2026-39813) allow unauthenticated remote attackers to perform OS command injection, remote code execution and privilege escalation; one CVE was added to CISA's KEV list due to active exploitation — organizations must urgently upgrade to 4.4.9+/5.0.6+ and increase monitoring for signs of compromise.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.