ZeroHour
Fortinet PSIRTpublished ()ingested

Cron Job Injection in Remote Backup

mediumAdvisoryimportance 28
AI summary · glm-5.3

Fortinet FortiSandbox command injection flaw (CVSS 6.7) in remote backup cron jobs lets privileged attackers execute arbitrary code via crafted HTTP requests.

Fortinet advisory FG-IR-26-167 discloses a command injection vulnerability (CWE-77, CVSSv3 6.7) in FortiSandbox's remote backup cron job functionality. A privileged attacker can execute unauthorized code or commands via crafted HTTP requests. The advisory was revised on 2026-09-08.

  • Command injection (CWE-77) in FortiSandbox, CVSSv3 6.7
  • Privileged attacker can execute unauthorized code via crafted HTTP requests
  • Flaw resides in remote backup cron job handling
Full article

CVSSv3 Score: 6.7 An Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability [CWE-77] in FortiSandbox may allow a privileged attacker to execute unauthorized code or commands via crafted HTTP requests. Revised on 2026-09-08 00:00:00

This source does not provide full text. Read it at fortiguard.fortinet.com.