CVE-2024-31490
10.09.2024, 15:15
An exposure of sensitive information to an unauthorized actor in Fortinet FortiSandbox version 4.4.0 through 4.4.4 and 4.2.0 through 4.2.6 and 4.0.0 through 4.0.5 and 3.2.2 through 3.2.4 and 3.1.5 allows attacker to information disclosure via HTTP get requests.Enginsight
| Vendor | Product | Version |
|---|---|---|
| fortinet | fortisandbox | 3.2.2 ≤ 𝑥 < 4.2.7 |
| fortinet | fortisandbox | 4.4.0 ≤ 𝑥 < 4.4.5 |
| fortinet | fortisandbox | 3.1.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration