An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability [CWE-79] vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.2, FortiSandbox 4.4.0 through 4.4.7, FortiSandbox 4.2 all versions, FortiSandbox 4.0 all versions may allow an authenticated privileged attacker to execute code via crafted requests.
References
| Link | Resource |
|---|---|
| https://fortiguard.fortinet.com/psirt/FG-IR-26-091 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-03-10 18:17
Updated : 2026-03-12 21:18
NVD link : CVE-2025-53608
Mitre link : CVE-2025-53608
CVE.ORG link : CVE-2025-53608
JSON object : View
Products Affected
fortinet
- fortisandbox
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
