ZeroHour

CVE-2021-26105

CVSS 3.1
8.8 high
EPSS
<1%p41
Published
()
Modified
Description

A stack-based buffer overflow vulnerability (CWE-121) in the profile parser of FortiSandbox version 3.2.2 and below, version 3.1.4 and below may allow an authenticated attacker to potentially execute unauthorized code or commands via specifically crafted HTTP requests.

Vendors
fortinet
Products
fortisandbox
Weakness
CWE-358, CWE-787
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.