CTIPilot
AI-generated · no human review · verify critical claims against the linked source. how it works →

Fortinet FortiSandbox

product · product:fortinet-fortisandbox

Coverage
1
first 2026-06-12 → last 2026-09-30
Latest activity
2026-06-17
Defused reports exploitation of three pre-auth FortiSandbox flaws and CISA lists two in KEV; upgrading to…
Peak priority
high
1 high
Targets
public-sector
sectors: public-sector, technology, defense · regions: europe
Sources cited
8
6 hosts

Action items (1)

Do-now tasks recorded on the entries about Fortinet FortiSandbox, newest first. Check the date before acting on an older one.

  • Upgrade every FortiSandbox on the 5.0 or 4.4 branch to 5.0.6 or 4.4.9, which fixes all three flaws Defused reports exploited (CVE-2026-25089, CVE-2026-39808, CVE-2026-39813), and confirm the web UI and JRPC API answer only from the management network.
    2026-06-12CVE-2026-25089 +2

Defender insights

What each entry about Fortinet FortiSandbox tells a defender to do, newest first.

2026-06-12HIGHexploitedDefused reports exploitation of three pre-auth FortiSandbox flaws and CISA lists two in KEV; upgrading to 5.0.6 or 4.4.9 fixes all three

Exposure · detection

Story timeline

  1. 2026-06-12CVE-2026-25089, Fortinet FortiSandbox: unauthenticated OS command injection in the web UI's VNC-launch handler (CVSS 9.8)
    trending-vulnerabilitiesDefused reports exploitation of three pre-auth FortiSandbox flaws and CISA lists two in KEV; upgrading to 5.0.6 or 4.4.9 fixes all three

Hunting pivots

Releases covered
Fortinet FortiSandbox
ATT&CK techniques (1 across 1 tactic)

1 technique observed across 1 entry about this entity, derived from entry metadata and body evidence, never asserted without a published entry behind it · pinned to MITRE ATT&CK v19.2 · compare on the matrix · Navigator layer (JSON)

  • Initial AccessExploit Public-Facing Application

Initial Access TA0001

T1190Exploit Public-Facing Application×1

Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network. The weakness in the system can be a software bug, a temporary glitch, or a misconfiguration.

Evidence: 2026-06-12/cve-2026-25089-fortinet-fortisandbox-unauthenticated-os-comm · ATT&CK page ↗

Entries about Fortinet FortiSandbox (1)

2026-06-12 · view entry permalink →

HIGHCVE-2026-25089 +2exploitedupdatedNATOA2

CVE-2026-25089, Fortinet FortiSandbox: unauthenticated OS command injection in the web UI's VNC-launch handler (CVSS 9.8)

Fortinet patched CVE-2026-25089 (CWE-78) on 2026-06-09: the FortiSandbox web interface's "start vnc" feature passes attacker-controlled JSON input to an OS command, a second-order injection that "may allow an unauthenticated attacker to execute unauthorized commands via specifically crafted HTTP requests" (Fortinet PSIRT FG-IR-26-141, 2026-06-09). Affected are FortiSandbox 5.0.0 through 5.0.5 and 4.4.0 through 4.4.8 plus FortiSandbox Cloud and PaaS 5.0.4 through 5.0.5; the fix is 5.0.6 or 4.4.9, and the 5.2 branch is not affected (Fortinet PSIRT FG-IR-26-141, 2026-06-09). CCB Belgium urged immediate patching and warned that a public proof-of-concept raises the likelihood of exploitation (CCB Belgium, 2026-06-11).

The same upgrade closes two April flaws that Defused reported under attack alongside it. CVE-2026-39813 is a path traversal in the JRPC API that lets an unauthenticated attacker bypass authentication on 5.0.0 through 5.0.5 and 4.4.0 through 4.4.8 (Fortinet PSIRT FG-IR-26-112, 2026-04-14). CVE-2026-39808 is an OS command injection through an API endpoint that gives an unauthenticated attacker command execution on 4.4.0 through 4.4.8, with 5.0 not affected (Fortinet PSIRT FG-IR-26-100, 2026-04-14). Fortinet's three advisories give all three flaws the same CVSS 3.1 vector, which scores 9.8 before the temporal adjustment behind the 9.1 they display (Fortinet PSIRT FG-IR-26-141, 2026-06-09) (Fortinet PSIRT FG-IR-26-112, 2026-04-14) (Fortinet PSIRT FG-IR-26-100, 2026-04-14). No exploitation was reported as of the 2026-06-09 disclosure. Defused then reported attacks on all three, and Help Net Security noted Fortinet had not yet confirmed them (Help Net Security, 2026-06-16). CISA added CVE-2026-25089 and CVE-2026-39808 to its Known Exploited Vulnerabilities catalog on 2026-07-16 (CISA KEV catalog, 2026-07-16), while Fortinet's three advisories list none of the flaws as known exploited (Fortinet PSIRT FG-IR-26-141, 2026-06-09) (Fortinet PSIRT FG-IR-26-112, 2026-04-14) (Fortinet PSIRT FG-IR-26-100, 2026-04-14).

Help Net Security describes FortiSandbox as a platform that other Fortinet security products depend on for threat verdicts to enforce blocking decisions and trigger automated responses (Help Net Security, 2026-06-16).

Contradiction: CCB Belgium says a publicly available proof-of-concept exploit raises the likelihood of exploitation (CCB Belgium, 2026-06-11), while Security Affairs reports that a working exploit for CVE-2026-25089 has not been publicly disclosed and that the exploit seen in attacks appears AI-assisted and bugged (Security Affairs, 2026-06-16).

may allow an unauthenticated attacker to execute unauthorized commands via specifically crafted HTTP requests

Fortinet PSIRT FG-IR-26-141 2026-06-09

Attackers have been spotted exploiting three vulnerabilities (CVE-2026-39813, CVE-2026-39808, CVE-2026-25089) in FortiSandbox

Help Net Security
Updaterun 2026-06-17-e102009cactionscvesevidenceprioritysectorssourcestagsbody

Threat-intelligence firm Defused Cyber reported active exploitation of three FortiSandbox flaws within a 24-hour window: CVE-2026-39813 (CVSS 9.1), a JRPC API path traversal that allows authentication bypass, and CVE-2026-39808 (CVSS 9.8), an OS command injection, both patched in April 2026, and CVE-2026-25089, the web UI command injection patched on 2026-06-09 (Security Affairs, 2026-06-16). Defused researchers speculate that the CVE-2026-25089 exploit was built with AI assistance and is bugged, yet attackers are still using it against unpatched systems (Security Affairs, 2026-06-16).

Help Net Security describes FortiSandbox as a platform that other Fortinet security products depend on for threat verdicts to enforce blocking decisions and trigger automated responses, and notes that Fortinet had not yet confirmed in-the-wild exploitation (Help Net Security, 2026-06-16).

Correctionrun 2026-09-30T0639Z-auditheadlinesummarytechniquesaffected_productscvesevidenceactionssourcesbodyclassificationentitiestags

The earlier main text said no in-the-wild exploitation was reported, treated a public proof-of-concept as established and carried a table of unrelated CVEs. Defused reported exploitation of all three flaws, which Fortinet had not confirmed (Help Net Security, 2026-06-16), and Fortinet's advisories list them as not known exploited (Fortinet PSIRT FG-IR-26-141, 2026-06-09) (Fortinet PSIRT FG-IR-26-112, 2026-04-14) (Fortinet PSIRT FG-IR-26-100, 2026-04-14). CISA added CVE-2026-25089 and CVE-2026-39808 to its KEV catalog on 2026-07-16 (CISA KEV catalog, 2026-07-16). Fortinet's advisories give the affected and fixed versions. For CVE-2026-25089 and CVE-2026-39813, 5.0.0 through 5.0.5 and 4.4.0 through 4.4.8 are affected, 5.0.6 or 4.4.9 fixes them and 5.2 is not affected (Fortinet PSIRT FG-IR-26-141, 2026-06-09) (Fortinet PSIRT FG-IR-26-112, 2026-04-14). For CVE-2026-39808, 4.4.0 through 4.4.8 is affected, 4.4.9 fixes it and 5.0 is not affected (Fortinet PSIRT FG-IR-26-100, 2026-04-14). Sources disagree on whether a public proof-of-concept exists (CCB Belgium, 2026-06-11) (Security Affairs, 2026-06-16). The 2026-06-17 text said FortiSandbox feeds verdicts to FortiGate, FortiMail, FortiProxy and FortiClient and that a compromised sandbox can suppress detection across that stack, while the cited report says only that other Fortinet security products depend on its verdicts (Help Net Security, 2026-06-16). CVE-2026-39813 was listed at CVSS 9.1 next to 9.8 for the other two. Fortinet gives all three the same vector, which scores 9.8 before the temporal adjustment behind the 9.1 on its advisories (Fortinet PSIRT FG-IR-26-112, 2026-04-14).

vulnerability12 Jun 05:00Zmulti-sourceOpen finding →

Co-occurring entities

Derived: referenced by the same focused operational entries (weekly summaries and report roundups don't count); ×N counts the shared entries.

Where this entity is cited

  • Vulns1

Source distribution

  • fortiguard.fortinet.com3 (38%)
  • advisories.ncsc.nl1 (12%)
  • ccb.belgium.be1 (12%)
  • cisa.gov1 (12%)
  • helpnetsecurity.com1 (12%)
  • securityaffairs.com1 (12%)