ZeroHour

CVE-2026-27316

CVSS 3.1
2.7 low
EPSS
<1%p23
Published
()
Modified
Description

A insufficiently protected credentials vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4 all versions, FortiSandbox PaaS 5.0.1 through 5.0.5 may allow an authenticathed administrator to read LDAP server credentials via client-side inspection.

Vendors
fortinet
Products
fortisandbox, fortisandbox cloud
Weakness
CWE-522
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.