Security Advisory

CVE-2026-39808

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-04-14 15:38:02
Last updated 2026-07-17 03:56:21
Assigner fortinet
CVSS score 9.1
State PUBLISHED

Description

A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.8 may allow attacker to execute unauthorized code or commands via <insert attack vector here>