CVE-2026-39808
EUVD-2026-2233814.04.2026, 16:16
A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.8 may allow attacker to execute unauthorized code or commands via <insert attack vector here>Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| fortinet | fortisandbox | 4.4.0 ≤ 𝑥 ≤ 4.4.8 | CNA |
| fortinet | fortisandbox | 23.4.4374 | CNA |
| fortinet | fortisandbox | 23.4.4350 | CNA |
| fortinet | fortisandbox | 23.3.4329 | CNA |
| fortinet | fortisandbox | 23.1.4245 | CNA |
| fortinet | fortisandbox | 22.2.4151 | CNA |
| fortinet | fortisandbox | 22.2.4134 | CNA |
| fortinet | fortisandbox | 22.1.4113 | CNA |
| fortinet | fortisandbox | 21.4.4072 | CNA |
| fortinet | fortisandbox | 21.3.4055 | CNA |